# 4.9.58 Created: 2023-03-20 07:53:03 +0000 UTC Image Digest: `sha256:2f6e765b2c8667c3ba4359b37d773e1bfbb366c62cac05b3d5017b30b64f6bae` Promoted from registry.ci.openshift.org/ocp/release:4.9.0-0.nightly-2023-03-17-155057 ## Changes from 4.9.4 ### Components * Kubernetes upgraded from 1.22.1 to 1.22.15 * Red Hat Enterprise Linux CoreOS upgraded from 49.84.202110142155-0 to 49.84.202303161052-0 ### Rebuilt images without code change * [aws-cloud-controller-manager](https://github.com/openshift/cloud-provider-aws) git [18d82a6d](https://github.com/openshift/cloud-provider-aws/commit/18d82a6d75252dcaed8356777e4883d8a2c9732a) `sha256:f2e37151152aa250ca0b59badcf7bc56742b2df5f33909cd691fa1b83c05dee8` * [azure-disk-csi-driver](https://github.com/openshift/azure-disk-csi-driver) git [ade73731](https://github.com/openshift/azure-disk-csi-driver/commit/ade737312a66074a55c8a216af3c1bfac23337fb) `sha256:1f9dc2fda1b8c2da864b04491ae995fb99f0f822a4d3c818a2b56d6cea8a2ed7` * [cluster-bootstrap](https://github.com/openshift/cluster-bootstrap) git [7e074a7d](https://github.com/openshift/cluster-bootstrap/commit/7e074a7d562882d1aeeef071a428d6d4b94cf2d2) `sha256:e1f6f90db2c0d430ec80c2ccc6a1260c63d6de354dbb0cea102a9f113f6678a9` * [cluster-csi-snapshot-controller-operator](https://github.com/openshift/cluster-csi-snapshot-controller-operator) git [c750d4b4](https://github.com/openshift/cluster-csi-snapshot-controller-operator/commit/c750d4b49aa1b1d4d24a6b7d0e5a6f14808f102e) `sha256:6c6a4201284c1c8c127bf9785bf8b5b56206e0ed23ef797fc0f957d0da441243` * [cluster-openshift-controller-manager-operator](https://github.com/openshift/cluster-openshift-controller-manager-operator) git [3015cb84](https://github.com/openshift/cluster-openshift-controller-manager-operator/commit/3015cb846aba96102c625f9a694f2dfccb85eb27) `sha256:dce439f6ed71e2a19498b78aac4dcb73e71393abdfb36bc345293b6d16d46949` * [cluster-policy-controller](https://github.com/openshift/cluster-policy-controller) git [8fbffaf2](https://github.com/openshift/cluster-policy-controller/commit/8fbffaf2b3c7f30145b316c7e34da54747b3e634) `sha256:7c08d0722ee5959452cc65267bcb0dbdcc6ae636d5aa4dfa6e7278d5dcb9afc4` * [csi-driver-nfs](https://github.com/openshift/csi-driver-nfs) git [0e0c1739](https://github.com/openshift/csi-driver-nfs/commit/0e0c1739332fee06dfc982b1b05d06005a3ddbee) `sha256:d6af3231240bcfdf6763b9885e3d0cfccb0c1f3b6d42f5c88b452ae19bb4184d` * [csi-external-attacher](https://github.com/openshift/csi-external-attacher) git [0a1737c4](https://github.com/openshift/csi-external-attacher/commit/0a1737c455fe68bdf0480de79e0aa8585e6dc503) `sha256:f6e78480a485c90ff284edd5fc7023d28eff58140cfde2ab6818ed34330e6e27` * [csi-external-provisioner](https://github.com/openshift/csi-external-provisioner) git [7736e729](https://github.com/openshift/csi-external-provisioner/commit/7736e7293ea4cdba858f70fa1d59894dde6bd2bb) `sha256:0dd5aab9b53efab9c801064b0681c223ccd95e7e20899e595d0083126a7d719e` * [csi-external-resizer](https://github.com/openshift/csi-external-resizer) git [dad46d03](https://github.com/openshift/csi-external-resizer/commit/dad46d03bda869cf9b8ccff0087fb827906bc288) `sha256:b031eef3f8a4d2d70928dd8e1c2753647b53b85b625364d0c4043d072060c8e4` * [csi-external-snapshotter](https://github.com/openshift/csi-external-snapshotter) git [52ab8938](https://github.com/openshift/csi-external-snapshotter/commit/52ab8938fe0a1ea3cb666ebd0c6f7b46db5cb0de) `sha256:a63553047c978f505e6e1d35fadc2abcea945400d3171e0e35298d56d758ccd7` * [csi-livenessprobe](https://github.com/openshift/csi-livenessprobe) git [c13c3a5f](https://github.com/openshift/csi-livenessprobe/commit/c13c3a5f6292e10522700b0f911acebeea3c6f8c) `sha256:9c799e6dd74af2fb7731e07f6049051a043893602e1d33c53d00e063a86b37a1` * [csi-node-driver-registrar](https://github.com/openshift/csi-node-driver-registrar) git [3e02b07e](https://github.com/openshift/csi-node-driver-registrar/commit/3e02b07e70fe306e841b563d3ca8edb0def5fe7f) `sha256:d05a8b97d1c77a4557a69b5a6ae53641904b26eeb42af50e2be8da3fb67ff857` * [csi-snapshot-controller](https://github.com/openshift/csi-external-snapshotter) git [52ab8938](https://github.com/openshift/csi-external-snapshotter/commit/52ab8938fe0a1ea3cb666ebd0c6f7b46db5cb0de) `sha256:80bd7f2ad724ec815d19474518972ed0313efa70efe51455b7e62f049da5c20d` * [csi-snapshot-validation-webhook](https://github.com/openshift/csi-external-snapshotter) git [52ab8938](https://github.com/openshift/csi-external-snapshotter/commit/52ab8938fe0a1ea3cb666ebd0c6f7b46db5cb0de) `sha256:46951cb725a67dda153fa6797ad0e242ee6f7b9dc92508e29ddb48af1365e240` * [egress-router-cni](https://github.com/openshift/egress-router-cni) git [099b7569](https://github.com/openshift/egress-router-cni/commit/099b75697f58443e87d3d88e9d6f5c426475ccea) `sha256:08baf90a1a9a923863e2e0ac5755f080cca4e33de63c2608ffeb031f3589517c` * [gcp-pd-csi-driver](https://github.com/openshift/gcp-pd-csi-driver) git [48d49f7f](https://github.com/openshift/gcp-pd-csi-driver/commit/48d49f7f9ef96a7a42a789e3304ead53f266f475) `sha256:cd49ca336bac7892fff0e8a014863a357208e40b6727fb5eebf4282285241a1c` * [ironic-hardware-inventory-recorder](https://github.com/openshift/ironic-hardware-inventory-recorder-image) git [8e2d1db6](https://github.com/openshift/ironic-hardware-inventory-recorder-image/commit/8e2d1db6f2c66128c3b5682e60cdaaee786d992f) `sha256:802b244078160a1acef093ba65a39542df47c4fe44ea0bde04068655cb501ec7` * [ironic-inspector](https://github.com/openshift/ironic-inspector-image) git [9474b758](https://github.com/openshift/ironic-inspector-image/commit/9474b75871108ba4b4855c9b46e3b1ce4aae1342) `sha256:ef7d5684e0f6c1a943ddc23053791488596ee43d0f4f04d93e8a2cfe5fcfe015` * [ironic-static-ip-manager](https://github.com/openshift/ironic-static-ip-manager) git [d13dccb8](https://github.com/openshift/ironic-static-ip-manager/commit/d13dccb8d419159efdd7a63428f7820e346b0395) `sha256:bd99fa237e220c254f403ae2a88675de864b132e699e6192973df1df56a23e7c` * [kube-rbac-proxy](https://github.com/openshift/kube-rbac-proxy) git [58e09297](https://github.com/openshift/kube-rbac-proxy/commit/58e09297223ca912cba8b369bfad150b0fc04a9f) `sha256:86d88824004bfede10de2d432250f4821a36c88acaa651cf96deba5a0a2d62b0` * [kube-state-metrics](https://github.com/openshift/kube-state-metrics) git [6e41dbd4](https://github.com/openshift/kube-state-metrics/commit/6e41dbd42c8f38d6960f5e837d9e64fbd5e8d3ef) `sha256:b34b4fc5a69700776bd16bf933af3971c5571eaad9c995dad6aa08bbf5dc670d` * [libvirt-machine-controllers](https://github.com/openshift/cluster-api-provider-libvirt) git [59ae2edf](https://github.com/openshift/cluster-api-provider-libvirt/commit/59ae2edf88755f915b7d76d78a8934ee17487ad6) `sha256:c868305241454f5617c12a5864ab749ce489cbbdb6e360d15dc7197dfa4d51f0` * machine-os-content `sha256:a5b70112b49a6e7aed47633b91984c41b201f2d019f965552742e8c8acf8c5c4` * [mdns-publisher](https://github.com/openshift/mdns-publisher) git [266597b3](https://github.com/openshift/mdns-publisher/commit/266597b3c75fcbaf6441ef4acd1f235f74a0f305) `sha256:1d6644b1ec36bc4fe76a57c56d208c5fb48d31fbeca334d62c726bb52eab201a` * [multus-admission-controller](https://github.com/openshift/multus-admission-controller) git [3c28a57a](https://github.com/openshift/multus-admission-controller/commit/3c28a57a831d11380e612a616820bf8a42261d9d) `sha256:2547469e7ce00b4807091ab57b53263b08e662a3dd0388d0ffea90db83bd50e8` * [multus-networkpolicy](https://github.com/openshift/multus-networkpolicy) git [fd12fede](https://github.com/openshift/multus-networkpolicy/commit/fd12fedeb9e05637279386aa2aacd443ac1c0da7) `sha256:2f15208aef44a5ddff627ac285de1abdb8b9ac1e0dbb1dd009a195c7ce6003ef` * [network-tools](https://github.com/openshift/network-tools) git [ed0b846c](https://github.com/openshift/network-tools/commit/ed0b846c056056848f0ab7741bd3f1254e1862d6) `sha256:04ddfd213fd5f50b6979e219c680a1acc16993dd1f86c2ee70818a7ddcd9bad3` * [oauth-proxy](https://github.com/openshift/oauth-proxy) git [9ea1ebc8](https://github.com/openshift/oauth-proxy/commit/9ea1ebc89f721d3cd929f58c7ab9ed4273d3c493) `sha256:c980495d2a1ea6185baed3e34972da2ea375354e97ba34a51a0307c7a410386c` * [openshift-state-metrics](https://github.com/openshift/openshift-state-metrics) git [689af8b8](https://github.com/openshift/openshift-state-metrics/commit/689af8b8dcb57484dc0c6428a3e8c9d73ef294a2) `sha256:543feff94c5cc7a17ae8294af34962100547b7cd5edcdb2d8e90ffb1c98f8a63` * [prom-label-proxy](https://github.com/openshift/prom-label-proxy) git [9f870bfa](https://github.com/openshift/prom-label-proxy/commit/9f870bfaceeffb88a662b2e2e384e34dd9721853) `sha256:315de9dafb30ba7e920d6f1e897a45508c01806fdebef608b80cce5762cfc977` * [prometheus](https://github.com/openshift/prometheus) git [3197fa71](https://github.com/openshift/prometheus/commit/3197fa71f6b01d2acd8c354056b015d1c0a06f7d) `sha256:be4d1d6824d1a77a860edcd67c51790e1e6b662530f2d965cac1ac64d17fff0e` * [prometheus-alertmanager](https://github.com/openshift/prometheus-alertmanager) git [579e3c68](https://github.com/openshift/prometheus-alertmanager/commit/579e3c6879bad1ac3a1c4f7146b21f907980dafd) `sha256:ac963e6c77086056e4935bb97ec920bbf52383915f281a8f310f6e158b067c8c` * [prometheus-node-exporter](https://github.com/openshift/node_exporter) git [1ab97f35](https://github.com/openshift/node_exporter/commit/1ab97f35f07cf1ed02a2b4ea3f3c3c9d09bf94b5) `sha256:e06abe0d291cadb92dce619a6d3cd8b2aae6eca7883b7528134e0c50a0aa3cbe` * [service-ca-operator](https://github.com/openshift/service-ca-operator) git [ab44f586](https://github.com/openshift/service-ca-operator/commit/ab44f586318864ed385dff5a59ea72b486afbe35) `sha256:fcd12b845289618a8306748077874ada795c11ca9b6e8017190e596df2c5f05f` * [telemeter](https://github.com/openshift/telemeter) git [03842e05](https://github.com/openshift/telemeter/commit/03842e05c3530786315e436522471667af86627e) `sha256:bc23dc7e3c6b330c62b2fa9ed35deda68557430ea1a8348e033228de22fea037` * [vsphere-csi-driver](https://github.com/openshift/vmware-vsphere-csi-driver) git [4ece3d1b](https://github.com/openshift/vmware-vsphere-csi-driver/commit/4ece3d1b07cc0e25abe028c7190ae9ad70cb87ee) `sha256:fc751b60df32d02d01929bb41779f558cd585aefd33fc42aed651e0a8cc5d62c` * [vsphere-csi-driver-syncer](https://github.com/openshift/vmware-vsphere-csi-driver) git [4ece3d1b](https://github.com/openshift/vmware-vsphere-csi-driver/commit/4ece3d1b07cc0e25abe028c7190ae9ad70cb87ee) `sha256:61f1a998468309361da24f51421db0b76945af5fa8b0a9ebb59269dc4dea00af` ### [aws-ebs-csi-driver](https://github.com/openshift/aws-ebs-csi-driver/tree/7f60c7858f620f2a2a0f42553fc5e3facd655c6f) * [Bug 2103982](https://bugzilla.redhat.com/show_bug.cgi?id=2103982): Fix build on ARM after rebase [#204](https://github.com/openshift/aws-ebs-csi-driver/pull/204) * [Bug 2103982](https://bugzilla.redhat.com/show_bug.cgi?id=2103982): Rebase to v1.4.0 [#203](https://github.com/openshift/aws-ebs-csi-driver/pull/203) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver/compare/26f1b6f4471d0127fa1ed3129d412e22ab788086...7f60c7858f620f2a2a0f42553fc5e3facd655c6f) ### [aws-ebs-csi-driver-operator](https://github.com/openshift/aws-ebs-csi-driver-operator/tree/3bea487dc9f5568bef18af28f7f9f4595888cbdf) * [Bug 2077897](https://bugzilla.redhat.com/show_bug.cgi?id=2077897): Set custom endpoint environment variable if available [#155](https://github.com/openshift/aws-ebs-csi-driver-operator/pull/155) * [Full changelog](https://github.com/openshift/aws-ebs-csi-driver-operator/compare/e8e2cb3682ba7c4796cb2cd7235cb0284548a55a...3bea487dc9f5568bef18af28f7f9f4595888cbdf) ### [aws-machine-controllers](https://github.com/openshift/cluster-api-provider-aws/tree/0f5c46e88122468b8a92216118ffd71fa91fe429) * [OCPBUGS-3326](https://issues.redhat.com/browse/OCPBUGS-3326): Update map of supported aws instance types [#452](https://github.com/openshift/cluster-api-provider-aws/pull/452) * [OCPBUGS-2578](https://issues.redhat.com/browse/OCPBUGS-2578): Fix go list for go1.18 [#449](https://github.com/openshift/cluster-api-provider-aws/pull/449) * [OCPBUGS-572](https://issues.redhat.com/browse/OCPBUGS-572): Fix panic when accessing nil machine annotations map [#446](https://github.com/openshift/cluster-api-provider-aws/pull/446) * [Bug 2111004](https://bugzilla.redhat.com/show_bug.cgi?id=2111004): Validate unknown regions using AWS API [#441](https://github.com/openshift/cluster-api-provider-aws/pull/441) * [Bug 2065483](https://bugzilla.redhat.com/show_bug.cgi?id=2065483): Ensure IOPS setting is honoured on all supported block device types [#436](https://github.com/openshift/cluster-api-provider-aws/pull/436) * [Bug 2029993](https://bugzilla.redhat.com/show_bug.cgi?id=2029993): Prevent Machine from being considered provisioned until it exists in AWS [#431](https://github.com/openshift/cluster-api-provider-aws/pull/431) * [Bug 2015605](https://bugzilla.redhat.com/show_bug.cgi?id=2015605): do not requeue if the machine has been updated [#425](https://github.com/openshift/cluster-api-provider-aws/pull/425) * [Full changelog](https://github.com/openshift/cluster-api-provider-aws/compare/f5013d0471e536fa4c4f1871bbe92931aed04b42...0f5c46e88122468b8a92216118ffd71fa91fe429) ### [aws-pod-identity-webhook](https://github.com/openshift/aws-pod-identity-webhook/tree/37a13282bc56887e72d463c24168df59d5971b2f) * [Bug 2026379](https://bugzilla.redhat.com/show_bug.cgi?id=2026379): update go.mod for go1.16 [#147](https://github.com/openshift/aws-pod-identity-webhook/pull/147) * [Full changelog](https://github.com/openshift/aws-pod-identity-webhook/compare/175f98f8b3167349e96a6793f13d1c46a07f7582...37a13282bc56887e72d463c24168df59d5971b2f) ### [azure-cloud-controller-manager, azure-cloud-node-manager](https://github.com/openshift/cloud-provider-azure/tree/66d808ffbbdd04bf5138d2a4d522cdc3c4279813) * bug OCPBUGS-2101: .dockerignore: enable OSBS2 builds [#43](https://github.com/openshift/cloud-provider-azure/pull/43) * [Full changelog](https://github.com/openshift/cloud-provider-azure/compare/c02678d890edd540de604d297d363883cc65ce68...66d808ffbbdd04bf5138d2a4d522cdc3c4279813) ### [azure-disk-csi-driver-operator](https://github.com/openshift/azure-disk-csi-driver-operator/tree/15e474ce3bce9ce219fdd85ceb42620c18d9f817) * [Bug 2029571](https://bugzilla.redhat.com/show_bug.cgi?id=2029571): Add custom CA bundle support [#39](https://github.com/openshift/azure-disk-csi-driver-operator/pull/39) * [Full changelog](https://github.com/openshift/azure-disk-csi-driver-operator/compare/60fd0edd976ccfe9ff5180b7ecf7f5201f62b000...15e474ce3bce9ce219fdd85ceb42620c18d9f817) ### [azure-machine-controllers](https://github.com/openshift/cluster-api-provider-azure/tree/05936875b9b2180799a0b31db4d9358729a1bb4d) * [OCPBUGS-2581](https://issues.redhat.com/browse/OCPBUGS-2581): Fix go list for go1.18 [#264](https://github.com/openshift/cluster-api-provider-azure/pull/264) * [Bug 2047845](https://bugzilla.redhat.com/show_bug.cgi?id=2047845): Requeue create on invalid credentials errors [#249](https://github.com/openshift/cluster-api-provider-azure/pull/249) * [Full changelog](https://github.com/openshift/cluster-api-provider-azure/compare/c689e78f705206f94f4187c86db8356b0118d12c...05936875b9b2180799a0b31db4d9358729a1bb4d) ### [baremetal-installer, installer, installer-artifacts](https://github.com/openshift/installer/tree/1882c69e27b57b5b90904de718a4bc7a304c5543) * [OCPBUGS-6086](https://issues.redhat.com/browse/OCPBUGS-6086): OpenStack: Force JSON content-type in Swift [#6787](https://github.com/openshift/installer/pull/6787) * [Bug 2101013](https://bugzilla.redhat.com/show_bug.cgi?id=2101013): Release 4.9 go getter update [#6381](https://github.com/openshift/installer/pull/6381) * [OCPBUGS-1010](https://issues.redhat.com/browse/OCPBUGS-1010): Download yq in upi installer containers [#6316](https://github.com/openshift/installer/pull/6316) * [OCPBUGS-250](https://issues.redhat.com/browse/OCPBUGS-250): Allow setting bootstrap kubelet ip [#6240](https://github.com/openshift/installer/pull/6240) * [Bug 2095320](https://bugzilla.redhat.com/show_bug.cgi?id=2095320): bump RHCOS 4.9 bootimage metadata [#6159](https://github.com/openshift/installer/pull/6159) * [Bug 2009024](https://bugzilla.redhat.com/show_bug.cgi?id=2009024): Delete all the ports from tagged Neutron networks. [#6122](https://github.com/openshift/installer/pull/6122) * [Bug 2098158](https://bugzilla.redhat.com/show_bug.cgi?id=2098158): Bootstrap timeout [#6025](https://github.com/openshift/installer/pull/6025) * [Bug 2099741](https://bugzilla.redhat.com/show_bug.cgi?id=2099741): Collect whole journal and netstat data [#6036](https://github.com/openshift/installer/pull/6036) * [Bug 2043298](https://bugzilla.redhat.com/show_bug.cgi?id=2043298): bump RHCOS 4.9 boot images [#5963](https://github.com/openshift/installer/pull/5963) * [Bug 2087972](https://bugzilla.redhat.com/show_bug.cgi?id=2087972): Set rc-manager=unmanaged for on-prem bootstrap [#5926](https://github.com/openshift/installer/pull/5926) * [Bug 2025862](https://bugzilla.redhat.com/show_bug.cgi?id=2025862): Improve host role management during assets creation [#5408](https://github.com/openshift/installer/pull/5408) * [Bug 2067092](https://bugzilla.redhat.com/show_bug.cgi?id=2067092): stop considering Mint mode as supported on Azure (#5699) [#5738](https://github.com/openshift/installer/pull/5738) * [Bug 2052307](https://bugzilla.redhat.com/show_bug.cgi?id=2052307): aws: Filter out local zones when generating a default list of zones [#5627](https://github.com/openshift/installer/pull/5627) * [Bug 2042443](https://bugzilla.redhat.com/show_bug.cgi?id=2042443): openstack/Dockerfile: add make and gettext [#5549](https://github.com/openshift/installer/pull/5549) * [Bug 2038429](https://bugzilla.redhat.com/show_bug.cgi?id=2038429): Azure: Update Default Instance Types [#5520](https://github.com/openshift/installer/pull/5520) * [Bug 2043590](https://bugzilla.redhat.com/show_bug.cgi?id=2043590): vendor: bump aws terraform provider to v3.1.0-openshift-2 [#5559](https://github.com/openshift/installer/pull/5559) * [Bug 2031606](https://bugzilla.redhat.com/show_bug.cgi?id=2031606): aws: get ips for all control plane instances for bootstrap gather [#5474](https://github.com/openshift/installer/pull/5474) * [Bug 2022172](https://bugzilla.redhat.com/show_bug.cgi?id=2022172): Relax vcenter hostname check [#5372](https://github.com/openshift/installer/pull/5372) * [Bug 2029409](https://bugzilla.redhat.com/show_bug.cgi?id=2029409): Update defaultReleaseImageOriginal to 4.9 [#5450](https://github.com/openshift/installer/pull/5450) * [Bug 2028611](https://bugzilla.redhat.com/show_bug.cgi?id=2028611): vendor: update terraform-provider-google for rate limit fix [#5445](https://github.com/openshift/installer/pull/5445) * [Bug 2027329](https://bugzilla.redhat.com/show_bug.cgi?id=2027329): Handle unset default machine pool [#5424](https://github.com/openshift/installer/pull/5424) * [Bug 2022616](https://bugzilla.redhat.com/show_bug.cgi?id=2022616): Add validation to check APIVIP is IPv4 in dual-stack for Bare Metal [#5380](https://github.com/openshift/installer/pull/5380) * [Bug 2017985](https://bugzilla.redhat.com/show_bug.cgi?id=2017985): Set AWS Bootstrap Type == Master [#5337](https://github.com/openshift/installer/pull/5337) * [Bug 2016267](https://bugzilla.redhat.com/show_bug.cgi?id=2016267): Add ingress rules to master SG for compact clusters [#5320](https://github.com/openshift/installer/pull/5320) * [Bug 2004052](https://bugzilla.redhat.com/show_bug.cgi?id=2004052): OpenStack: Fix links in SR-IOV workers doc [#5212](https://github.com/openshift/installer/pull/5212) * [Bug 2009787](https://bugzilla.redhat.com/show_bug.cgi?id=2009787): Fix RAM validation for openstack flavors [#5262](https://github.com/openshift/installer/pull/5262) * [Bug 2004569](https://bugzilla.redhat.com/show_bug.cgi?id=2004569): Fix router clean up upon cluster destroy [#5220](https://github.com/openshift/installer/pull/5220) * [Bug 2015811](https://bugzilla.redhat.com/show_bug.cgi?id=2015811): bump oVirt terraform provider version which fix "Disk is locked" bug [#5315](https://github.com/openshift/installer/pull/5315) * [Full changelog](https://github.com/openshift/installer/compare/6e5b992ba719dd4ea2d0c2a8b08ecad45179e553...1882c69e27b57b5b90904de718a4bc7a304c5543) ### [baremetal-machine-controllers](https://github.com/openshift/cluster-api-provider-baremetal/tree/41aa1f7002a5d4750648d4a49cf5e949c169c12d) * [Bug 2100983](https://bugzilla.redhat.com/show_bug.cgi?id=2100983): Uplift BMO to remove go-getter dependency [#176](https://github.com/openshift/cluster-api-provider-baremetal/pull/176) * Update OWNERS [#180](https://github.com/openshift/cluster-api-provider-baremetal/pull/180) * [Full changelog](https://github.com/openshift/cluster-api-provider-baremetal/compare/1c81cab6cc3a166f9b42ffc59c0870c92739229e...41aa1f7002a5d4750648d4a49cf5e949c169c12d) ### [baremetal-operator](https://github.com/openshift/baremetal-operator/tree/4e7605ba54b7f2875b750b24c32c411f00a5e573) * [Bug 2100995](https://bugzilla.redhat.com/show_bug.cgi?id=2100995): Uplift kustomize to v4 to remove go-getter dependency [#235](https://github.com/openshift/baremetal-operator/pull/235) * [Bug 2009849](https://bugzilla.redhat.com/show_bug.cgi?id=2009849): Avoid logging BMC password when creds change [#183](https://github.com/openshift/baremetal-operator/pull/183) * [Bug 2009850](https://bugzilla.redhat.com/show_bug.cgi?id=2009850): Fix fallback for ironic drivers that don't support soft power off [#184](https://github.com/openshift/baremetal-operator/pull/184) * [Full changelog](https://github.com/openshift/baremetal-operator/compare/cf45440bbe2cfc2dcc66dbb9ac51d3c23f5ceeee...4e7605ba54b7f2875b750b24c32c411f00a5e573) ### [baremetal-runtimecfg](https://github.com/openshift/baremetal-runtimecfg/tree/e3602f0966c0ffb6038c6075efdf1ae49537d63b) * [Bug 2101794](https://bugzilla.redhat.com/show_bug.cgi?id=2101794): Avoid kubernetes node port range [#182](https://github.com/openshift/baremetal-runtimecfg/pull/182) * [Bug 2026012](https://bugzilla.redhat.com/show_bug.cgi?id=2026012): Ignore VIPs in node-ip show [#161](https://github.com/openshift/baremetal-runtimecfg/pull/161) * [Bug 2043650](https://bugzilla.redhat.com/show_bug.cgi?id=2043650): Avoid dynamically allocated port range for haproxy [#167](https://github.com/openshift/baremetal-runtimecfg/pull/167) * [Bug 2049903](https://bugzilla.redhat.com/show_bug.cgi?id=2049903): Add delay after sending bootstrap stop and start messages [#169](https://github.com/openshift/baremetal-runtimecfg/pull/169) * [Bug 2025691](https://bugzilla.redhat.com/show_bug.cgi?id=2025691): retrieve only single type addresses for Keepalived ingress [#160](https://github.com/openshift/baremetal-runtimecfg/pull/160) * [Full changelog](https://github.com/openshift/baremetal-runtimecfg/compare/066cf9fd92c2ddcb47894d87ef6bef52b7fef292...e3602f0966c0ffb6038c6075efdf1ae49537d63b) ### [cli, cli-artifacts, deployer, tools](https://github.com/openshift/oc/tree/88cfeb4aa2d74ee5f5598c571661622c0034081b) * [OCPBUGS-3969](https://issues.redhat.com/browse/OCPBUGS-3969): set proper pod security ns labels [#1294](https://github.com/openshift/oc/pull/1294) * [Bug 2103913](https://bugzilla.redhat.com/show_bug.cgi?id=2103913): [must-gather] Add options for multi-node, host-network capture [#1191](https://github.com/openshift/oc/pull/1191) * [Bug 2103910](https://bugzilla.redhat.com/show_bug.cgi?id=2103910): Introduce an option to retrieve the rotated log files for a pod [#1190](https://github.com/openshift/oc/pull/1190) * [Bug 2092265](https://bugzilla.redhat.com/show_bug.cgi?id=2092265): [inspect] Add namespace-scoped networking resources to inspect [#1157](https://github.com/openshift/oc/pull/1157) * [Bug 2065174](https://bugzilla.redhat.com/show_bug.cgi?id=2065174): reuse SourceRepository.DetectAuth during argument classification for consistent interaction with private source repositories [#1089](https://github.com/openshift/oc/pull/1089) * [Bug 2051944](https://bugzilla.redhat.com/show_bug.cgi?id=2051944): Enhancing the output provided when backup collections are attempted [#1057](https://github.com/openshift/oc/pull/1057) * [Bug 2065302](https://bugzilla.redhat.com/show_bug.cgi?id=2065302): Add TMOUT env to debug node pod [#1090](https://github.com/openshift/oc/pull/1090) * [Bug 2051626](https://bugzilla.redhat.com/show_bug.cgi?id=2051626): bump(k8s.io/*) v0.22.6 [#1060](https://github.com/openshift/oc/pull/1060) * [Bug 2045008](https://bugzilla.redhat.com/show_bug.cgi?id=2045008): bump discovery burst [#1034](https://github.com/openshift/oc/pull/1034) * [Bug 2053149](https://bugzilla.redhat.com/show_bug.cgi?id=2053149): Fix catalog mirror from files [#1064](https://github.com/openshift/oc/pull/1064) * [Bug 2053222](https://bugzilla.redhat.com/show_bug.cgi?id=2053222): Fix mirroring images that have dots in their namespace [#1068](https://github.com/openshift/oc/pull/1068) * [Bug 2039761](https://bugzilla.redhat.com/show_bug.cgi?id=2039761): Remove `git://` from new-app tests [#1022](https://github.com/openshift/oc/pull/1022) * [Bug 2038930](https://bugzilla.redhat.com/show_bug.cgi?id=2038930): properly handle --dry-run=server [#1016](https://github.com/openshift/oc/pull/1016) * [Full changelog](https://github.com/openshift/oc/compare/96e95cef877ba04872b88e4e2597eabb0174d182...88cfeb4aa2d74ee5f5598c571661622c0034081b) ### [cloud-credential-operator](https://github.com/openshift/cloud-credential-operator/tree/51bc47c58ae3176d3e5b7e02e47f0793cddc13c8) * Update OWNERS to reflect reality [#498](https://github.com/openshift/cloud-credential-operator/pull/498) * [Bug 2055821](https://bugzilla.redhat.com/show_bug.cgi?id=2055821): Remove Azure mint mode support as Active Directory Graph API will be sunset [#453](https://github.com/openshift/cloud-credential-operator/pull/453) * [Bug 2024751](https://bugzilla.redhat.com/show_bug.cgi?id=2024751): pod-identity-webhook starts without tls [#423](https://github.com/openshift/cloud-credential-operator/pull/423) * [Bug 2015977](https://bugzilla.redhat.com/show_bug.cgi?id=2015977): Stop putting CCO in degraded state when stale credentials are found [#404](https://github.com/openshift/cloud-credential-operator/pull/404) * [Bug 1992563](https://bugzilla.redhat.com/show_bug.cgi?id=1992563): update alerts with summary and descriptions [#397](https://github.com/openshift/cloud-credential-operator/pull/397) * [Bug 2024751](https://bugzilla.redhat.com/show_bug.cgi?id=2024751): pod-identity-webhook starts without tls [#424](https://github.com/openshift/cloud-credential-operator/pull/424) * [Bug 2015989](https://bugzilla.redhat.com/show_bug.cgi?id=2015989): Check for aws status in infra platform status field before client setup [#405](https://github.com/openshift/cloud-credential-operator/pull/405) * [Full changelog](https://github.com/openshift/cloud-credential-operator/compare/0d83e9b1045b9d864892a8f5fd975711b0a810b8...51bc47c58ae3176d3e5b7e02e47f0793cddc13c8) ### [cluster-authentication-operator](https://github.com/openshift/cluster-authentication-operator/tree/265030f6ebe691184348d7eff7398dd3ff912a3e) * [Bug 2107027](https://bugzilla.redhat.com/show_bug.cgi?id=2107027): only ever include certificates in the oauth-serving-cert CM [#578](https://github.com/openshift/cluster-authentication-operator/pull/578) * [Bug 2037944](https://bugzilla.redhat.com/show_bug.cgi?id=2037944): endpoints checker: check only the custom hostname if configured [#531](https://github.com/openshift/cluster-authentication-operator/pull/531) * [Bug 2052467](https://bugzilla.redhat.com/show_bug.cgi?id=2052467): Custom route HTTPS certificate SAN validation [#545](https://github.com/openshift/cluster-authentication-operator/pull/545) * [Bug 2077483](https://bugzilla.redhat.com/show_bug.cgi?id=2077483): routeName used as customSecretName [#560](https://github.com/openshift/cluster-authentication-operator/pull/560) * [Bug 2037274](https://bugzilla.redhat.com/show_bug.cgi?id=2037274): pkg/operator#LegacyCNCerts: use increase function [#544](https://github.com/openshift/cluster-authentication-operator/pull/544) * [Bug 2062292](https://bugzilla.redhat.com/show_bug.cgi?id=2062292): e2e: Pin Keycloack to the legacy variant [#556](https://github.com/openshift/cluster-authentication-operator/pull/556) * [Bug 2039417](https://bugzilla.redhat.com/show_bug.cgi?id=2039417): remove degraded condition 4.9 [#542](https://github.com/openshift/cluster-authentication-operator/pull/542) * [Bug 2037274](https://bugzilla.redhat.com/show_bug.cgi?id=2037274): starter.go: add invalidCertsController [#535](https://github.com/openshift/cluster-authentication-operator/pull/535) * golang 1.16 bump: Updating ose-cluster-authentication-operator images to be consistent with ART [#526](https://github.com/openshift/cluster-authentication-operator/pull/526) * [Full changelog](https://github.com/openshift/cluster-authentication-operator/compare/b6c02e670147f001adf9c59ed0e0d4fee38214f5...265030f6ebe691184348d7eff7398dd3ff912a3e) ### [cluster-autoscaler](https://github.com/openshift/kubernetes-autoscaler/tree/4a3ffb0fa518a1c8ffa4bdefcb630b3b242b7acc) * [Bug 2108949](https://bugzilla.redhat.com/show_bug.cgi?id=2108949): Have VPA ignore phantom containers named "POD" [#237](https://github.com/openshift/kubernetes-autoscaler/pull/237) * [Bug 2066270](https://bugzilla.redhat.com/show_bug.cgi?id=2066270): UPSTREAM: <carry>: Fallback to CAPI annotations [#226](https://github.com/openshift/kubernetes-autoscaler/pull/226) * [Full changelog](https://github.com/openshift/kubernetes-autoscaler/compare/68fe93aa45e3080828c71c0d6e6e5da0384db012...4a3ffb0fa518a1c8ffa4bdefcb630b3b242b7acc) ### [cluster-autoscaler-operator](https://github.com/openshift/cluster-autoscaler-operator/tree/69a74410d6219d8fe9e75ff4b2afd092247fc5db) * [Bug 2070277](https://bugzilla.redhat.com/show_bug.cgi?id=2070277): add leader election flags to autoscaler deployment [#244](https://github.com/openshift/cluster-autoscaler-operator/pull/244) * [Bug 2025582](https://bugzilla.redhat.com/show_bug.cgi?id=2025582): Change ClusterAutoscalerUnschedulablePods severity to info [#230](https://github.com/openshift/cluster-autoscaler-operator/pull/230) * [Full changelog](https://github.com/openshift/cluster-autoscaler-operator/compare/4a6915434916fce27514541bf762bd7ea15a959c...69a74410d6219d8fe9e75ff4b2afd092247fc5db) ### [cluster-baremetal-operator](https://github.com/openshift/cluster-baremetal-operator/tree/1a4989280fd91a01172929383db3bf92cae3116b) * [Bug 2101001](https://bugzilla.redhat.com/show_bug.cgi?id=2101001): Uplift kustomize and BMO to remove go-getter dependency [#289](https://github.com/openshift/cluster-baremetal-operator/pull/289) * [OCPBUGS-1518](https://issues.redhat.com/browse/OCPBUGS-1518): [release-4.9] Fix a few papercuts [#292](https://github.com/openshift/cluster-baremetal-operator/pull/292) * Update with current OWNERS [#296](https://github.com/openshift/cluster-baremetal-operator/pull/296) * [Bug 2091747](https://bugzilla.redhat.com/show_bug.cgi?id=2091747): Fix interpretation of Deployment Status Conditions [#268](https://github.com/openshift/cluster-baremetal-operator/pull/268) * [Bug 2053581](https://bugzilla.redhat.com/show_bug.cgi?id=2053581): Calculating network stack only on supported Platforms [#244](https://github.com/openshift/cluster-baremetal-operator/pull/244) * [Bug 2012684](https://bugzilla.redhat.com/show_bug.cgi?id=2012684): add a new field "ProvisioningMacAddresses" to the provisioning CRD [#207](https://github.com/openshift/cluster-baremetal-operator/pull/207) * [Full changelog](https://github.com/openshift/cluster-baremetal-operator/compare/fc2865abc482503d04aff6f322cfbf776d2715a9...1a4989280fd91a01172929383db3bf92cae3116b) ### [cluster-cloud-controller-manager-operator](https://github.com/openshift/cluster-cloud-controller-manager-operator/tree/3712f8e13ed5da00d02828ee2b051a56396d2cac) * [Bug 2064837](https://bugzilla.redhat.com/show_bug.cgi?id=2064837): Fix CCCMO metric ports configuration [#180](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/180) * [Bug 2034504](https://bugzilla.redhat.com/show_bug.cgi?id=2034504): Ensure old deployment is deleted before new deployment creation [#162](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/162) * [Bug 2015503](https://bugzilla.redhat.com/show_bug.cgi?id=2015503): User CA bundle sync controller [#138](https://github.com/openshift/cluster-cloud-controller-manager-operator/pull/138) * [Full changelog](https://github.com/openshift/cluster-cloud-controller-manager-operator/compare/2b9246cdcb8873e92d9d7913608bed501d900cc9...3712f8e13ed5da00d02828ee2b051a56396d2cac) ### [cluster-config-operator](https://github.com/openshift/cluster-config-operator/tree/a6176504a7f21871809cd898c7f11cb77fb8f0f1) * [Bug 2075551](https://bugzilla.redhat.com/show_bug.cgi?id=2075551): [release-4.9] backport api to commit 019a246c52 [#252](https://github.com/openshift/cluster-config-operator/pull/252) * [Bug 2015306](https://bugzilla.redhat.com/show_bug.cgi?id=2015306): bump api [#224](https://github.com/openshift/cluster-config-operator/pull/224) * [Full changelog](https://github.com/openshift/cluster-config-operator/compare/f901f5bd6a9152145da27bc493477b224cdd5c47...a6176504a7f21871809cd898c7f11cb77fb8f0f1) ### [cluster-dns-operator](https://github.com/openshift/cluster-dns-operator/tree/eedd0dc7f53166dcb69e218fa92d66693d021225) * [Bug 2002621](https://bugzilla.redhat.com/show_bug.cgi?id=2002621): serviceChanged: Fix internalTrafficPolicy [#295](https://github.com/openshift/cluster-dns-operator/pull/295) * [Full changelog](https://github.com/openshift/cluster-dns-operator/compare/083d37c46a91d14762ad80c0ee8b6db40a3eb4bf...eedd0dc7f53166dcb69e218fa92d66693d021225) ### [cluster-etcd-operator](https://github.com/openshift/cluster-etcd-operator/tree/0d48ce4b3c787927703341ca2a5e18f471c9f050) * [OCPBUGS-7982](https://issues.redhat.com/browse/OCPBUGS-7982): fail early on missing node status envs [#1015](https://github.com/openshift/cluster-etcd-operator/pull/1015) * [OCPBUGS-7957](https://issues.redhat.com/browse/OCPBUGS-7957): set default etcd client timeout [#1014](https://github.com/openshift/cluster-etcd-operator/pull/1014) * [OCPBUGS-5554](https://issues.redhat.com/browse/OCPBUGS-5554): only allow TLS1.2/1.3 ciphersuites in etcd and CEO [#983](https://github.com/openshift/cluster-etcd-operator/pull/983) * [OCPBUGS-2944](https://issues.redhat.com/browse/OCPBUGS-2944): Add niceness to important etcd processes [#959](https://github.com/openshift/cluster-etcd-operator/pull/959) * [OCPBUGS-2120](https://issues.redhat.com/browse/OCPBUGS-2120): fix cert rotation on IP changes [#945](https://github.com/openshift/cluster-etcd-operator/pull/945) * [OCPBUGS-614](https://issues.redhat.com/browse/OCPBUGS-614): ensure healthy quorum before config update [#912](https://github.com/openshift/cluster-etcd-operator/pull/912) * [Bug 2102005](https://bugzilla.redhat.com/show_bug.cgi?id=2102005): Upping defrag timeout to 1 minute [#867](https://github.com/openshift/cluster-etcd-operator/pull/867) * [Bug 2095115](https://bugzilla.redhat.com/show_bug.cgi?id=2095115): cluster-backup.sh script has a conflict to use the '/etc/kubernetes/static-pod-certs' folder if a custom API certificate is defined [#849](https://github.com/openshift/cluster-etcd-operator/pull/849) * [Bug 2086119](https://bugzilla.redhat.com/show_bug.cgi?id=2086119): Add summary to etcd alert rules [#826](https://github.com/openshift/cluster-etcd-operator/pull/826) * [Bug 2082316](https://bugzilla.redhat.com/show_bug.cgi?id=2082316): Add new etcd members to reviewers, add Allen to approvers [#818](https://github.com/openshift/cluster-etcd-operator/pull/818) * [Bug 2068084](https://bugzilla.redhat.com/show_bug.cgi?id=2068084): manually disable defrag [#810](https://github.com/openshift/cluster-etcd-operator/pull/810) * update OWNERS [#721](https://github.com/openshift/cluster-etcd-operator/pull/721) * [Bug 2069830](https://bugzilla.redhat.com/show_bug.cgi?id=2069830): turn on initial corruption check [#772](https://github.com/openshift/cluster-etcd-operator/pull/772) * [Bug 2008175](https://bugzilla.redhat.com/show_bug.cgi?id=2008175): pkg/operator/metriccontroller: Fix query [#686](https://github.com/openshift/cluster-etcd-operator/pull/686) * [Bug 2009890](https://bugzilla.redhat.com/show_bug.cgi?id=2009890): pkg/operator/upgradebackupcontroller: fix backup dir name in status condition [#683](https://github.com/openshift/cluster-etcd-operator/pull/683) * [Bug 2007454](https://bugzilla.redhat.com/show_bug.cgi?id=2007454): pkg/cmd/render: disallow placeholder IPs [#667](https://github.com/openshift/cluster-etcd-operator/pull/667) * [Full changelog](https://github.com/openshift/cluster-etcd-operator/compare/dd596d4d16bf35634fa3b52e959717113311b7b0...0d48ce4b3c787927703341ca2a5e18f471c9f050) ### [cluster-image-registry-operator](https://github.com/openshift/cluster-image-registry-operator/tree/ee707b1e69819808a7d60bc79f6e14c2f77264cc) * [OCPBUGS-7407](https://issues.redhat.com/browse/OCPBUGS-7407): OpenStack: Add support for Proxy [#841](https://github.com/openshift/cluster-image-registry-operator/pull/841) * [OCPBUGS-7371](https://issues.redhat.com/browse/OCPBUGS-7371): swift: Retry connecting to OpenStack [#839](https://github.com/openshift/cluster-image-registry-operator/pull/839) * [Bug 2074052](https://bugzilla.redhat.com/show_bug.cgi?id=2074052): Deployment annotations, runtimeClassName override and fs policy change [#766](https://github.com/openshift/cluster-image-registry-operator/pull/766) * [Bug 2059606](https://bugzilla.redhat.com/show_bug.cgi?id=2059606): Retry on pruner failures [#757](https://github.com/openshift/cluster-image-registry-operator/pull/757) * [Bug 2023219](https://bugzilla.redhat.com/show_bug.cgi?id=2023219): Wait until cluster operators recover before proceeding [#731](https://github.com/openshift/cluster-image-registry-operator/pull/731) * [Full changelog](https://github.com/openshift/cluster-image-registry-operator/compare/4854e4ca7c9b0595c34e2223d5ba1f41bd79816f...ee707b1e69819808a7d60bc79f6e14c2f77264cc) ### [cluster-ingress-operator](https://github.com/openshift/cluster-ingress-operator/tree/99c69aedcc0ad8daffce5bb11f31e21a70fb6696) * [OCPBUGS-4881](https://issues.redhat.com/browse/OCPBUGS-4881): Update CRLs when they expire [#870](https://github.com/openshift/cluster-ingress-operator/pull/870) * [Bug 2100631](https://bugzilla.redhat.com/show_bug.cgi?id=2100631): Fix flakey logic in haproxy timeout tests [#795](https://github.com/openshift/cluster-ingress-operator/pull/795) * [OCPBUGS-1624](https://issues.redhat.com/browse/OCPBUGS-1624): Fix removing custom created service in openshift-ingress with same name [#831](https://github.com/openshift/cluster-ingress-operator/pull/831) * [Bug 2084336](https://bugzilla.redhat.com/show_bug.cgi?id=2084336): Fix enabling PROXY protocol on an upgraded cluster [#757](https://github.com/openshift/cluster-ingress-operator/pull/757) * [Bug 2097736](https://bugzilla.redhat.com/show_bug.cgi?id=2097736): Fix loadBalancerServiceAnnotationsChanged check and update [#786](https://github.com/openshift/cluster-ingress-operator/pull/786) * [Bug 2094054](https://bugzilla.redhat.com/show_bug.cgi?id=2094054): Delete LoadBalancer-type service finalizer logic [#771](https://github.com/openshift/cluster-ingress-operator/pull/771) * [Bug 2079517](https://bugzilla.redhat.com/show_bug.cgi?id=2079517): Use externalTrafficPolicy: Cluster with OVN [#713](https://github.com/openshift/cluster-ingress-operator/pull/713) * [Bug 2032677](https://bugzilla.redhat.com/show_bug.cgi?id=2032677): Azure: Add Support for Azure Stack Hub [#690](https://github.com/openshift/cluster-ingress-operator/pull/690) * [Bug 2064586](https://bugzilla.redhat.com/show_bug.cgi?id=2064586): Disable keepalive for canary probe [#722](https://github.com/openshift/cluster-ingress-operator/pull/722) * [Bug 2060111](https://bugzilla.redhat.com/show_bug.cgi?id=2060111): Set Upgradeable=False if default cert has no SAN [#711](https://github.com/openshift/cluster-ingress-operator/pull/711) * [Bug 2057518](https://bugzilla.redhat.com/show_bug.cgi?id=2057518): Normalize the AWS internal LB annotation value [#706](https://github.com/openshift/cluster-ingress-operator/pull/706) * [Bug 2058699](https://bugzilla.redhat.com/show_bug.cgi?id=2058699): Upgradeable Condition in Operator and IC status [#709](https://github.com/openshift/cluster-ingress-operator/pull/709) * [Bug 2014938](https://bugzilla.redhat.com/show_bug.cgi?id=2014938): Use fake dns provider with external cp topology only in IBM Cloud case [#666](https://github.com/openshift/cluster-ingress-operator/pull/666) * [Bug 2014711](https://bugzilla.redhat.com/show_bug.cgi?id=2014711): Fix for Azure dns privateZone degrade e2e test [#673](https://github.com/openshift/cluster-ingress-operator/pull/673) * [Bug 2015829](https://bugzilla.redhat.com/show_bug.cgi?id=2015829): Change default balancing algorithm to "leastconn" [#667](https://github.com/openshift/cluster-ingress-operator/pull/667) * [Full changelog](https://github.com/openshift/cluster-ingress-operator/compare/9aa4433d80ff891862dc6f16ea0d9f7c2387509a...99c69aedcc0ad8daffce5bb11f31e21a70fb6696) ### [cluster-kube-apiserver-operator](https://github.com/openshift/cluster-kube-apiserver-operator/tree/71d05ddd0965b32a8e3a5d1a70ff65041ccacc90) * [OCPBUGS-2206](https://issues.redhat.com/browse/OCPBUGS-2206): [release-4.9] Wire support for trusted service account issuers [#1388](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1388) * [Bug 2037274](https://bugzilla.redhat.com/show_bug.cgi?id=2037274): pkg/operator#LegacyCNCerts: use increase function [#1318](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1318) * [Bug 2044622](https://bugzilla.redhat.com/show_bug.cgi?id=2044622): staticpod pruner: check if the cert directory exists to avoid panic [#1297](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1297) * [Bug 2037274](https://bugzilla.redhat.com/show_bug.cgi?id=2037274): starter: include metrics controller [#1274](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1274) * [Bug 2029504](https://bugzilla.redhat.com/show_bug.cgi?id=2029504): encryption-controller: sync secrets conditionally [#1268](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1268) * [Bug 2014615](https://bugzilla.redhat.com/show_bug.cgi?id=2014615): Exempt metrics scrapes from APF. [#1244](https://github.com/openshift/cluster-kube-apiserver-operator/pull/1244) * [Full changelog](https://github.com/openshift/cluster-kube-apiserver-operator/compare/95c3f9ae123e3c4a16281de94419e7b987c804c9...71d05ddd0965b32a8e3a5d1a70ff65041ccacc90) ### [cluster-kube-controller-manager-operator](https://github.com/openshift/cluster-kube-controller-manager-operator/tree/78b8e48b3f4ed09037d71ea7a94582d1b2123fbd) * [Bug 2049907](https://bugzilla.redhat.com/show_bug.cgi?id=2049907): allow cluster-policy-controller to fallback to default cert [#600](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/600) * [Bug 2044622](https://bugzilla.redhat.com/show_bug.cgi?id=2044622): Sync with the latest 4.9 library-go [#593](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/593) * Updating ose-cluster-kube-controller-manager-operator images to be consistent with ART [#537](https://github.com/openshift/cluster-kube-controller-manager-operator/pull/537) * [Full changelog](https://github.com/openshift/cluster-kube-controller-manager-operator/compare/2f158fca08d20c766eabe18f0d1964ce1027507f...78b8e48b3f4ed09037d71ea7a94582d1b2123fbd) ### [cluster-kube-scheduler-operator](https://github.com/openshift/cluster-kube-scheduler-operator/tree/0cfc646b647b19f8496334407420373bffbcd770) * [Bug 2026109](https://bugzilla.redhat.com/show_bug.cgi?id=2026109): Disable balancedAllocation and add weight for HighNodeUtilization profile [#379](https://github.com/openshift/cluster-kube-scheduler-operator/pull/379) * [Bug 2044622](https://bugzilla.redhat.com/show_bug.cgi?id=2044622): Sync with the latest 4.9 library-go [#405](https://github.com/openshift/cluster-kube-scheduler-operator/pull/405) * [Bug 2037665](https://bugzilla.redhat.com/show_bug.cgi?id=2037665): Check policy name field independently of the configmap change [#403](https://github.com/openshift/cluster-kube-scheduler-operator/pull/403) * [Bug 2037665](https://bugzilla.redhat.com/show_bug.cgi?id=2037665): Remove policy upgradeable when policy field cleared [#402](https://github.com/openshift/cluster-kube-scheduler-operator/pull/402) * [Bug 2037665](https://bugzilla.redhat.com/show_bug.cgi?id=2037665): Set upgradeable=false if using Policy field [#400](https://github.com/openshift/cluster-kube-scheduler-operator/pull/400) * [Full changelog](https://github.com/openshift/cluster-kube-scheduler-operator/compare/aed619d85ec8efcd818cb5c37818096760193f43...0cfc646b647b19f8496334407420373bffbcd770) ### [cluster-kube-storage-version-migrator-operator](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/tree/7245b0f0b365f26b210a2f5c23256abb756a2f07) * [Bug 2022528](https://bugzilla.redhat.com/show_bug.cgi?id=2022528): Extensive number of requests from storage version operator in cluster [#77](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/77) * [Bug 2016176](https://bugzilla.redhat.com/show_bug.cgi?id=2016176): kube-storage-version-migrator constantly reporting type "Upgradeable" status Unknown [#72](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/pull/72) * [Full changelog](https://github.com/openshift/cluster-kube-storage-version-migrator-operator/compare/c45ac14912dd1e5c85cadeff8ac6c5fd1d1b0562...7245b0f0b365f26b210a2f5c23256abb756a2f07) ### [cluster-machine-approver](https://github.com/openshift/cluster-machine-approver/tree/993ec9fe8eae4f07eb01a42ebecf606ba0ad3f97) * [Bug 2031061](https://bugzilla.redhat.com/show_bug.cgi?id=2031061): Replace certificates with generated certificates [#147](https://github.com/openshift/cluster-machine-approver/pull/147) * [Bug 2024216](https://bugzilla.redhat.com/show_bug.cgi?id=2024216): Allow fallback to serving cert renewal accounting for egress IPs on SDN [#141](https://github.com/openshift/cluster-machine-approver/pull/141) * [Bug 2019754](https://bugzilla.redhat.com/show_bug.cgi?id=2019754): Ensure pending CSR count is valid post approval [#139](https://github.com/openshift/cluster-machine-approver/pull/139) * [Full changelog](https://github.com/openshift/cluster-machine-approver/compare/093c444752693993386cad486650e313dbf65b58...993ec9fe8eae4f07eb01a42ebecf606ba0ad3f97) ### [cluster-monitoring-operator](https://github.com/openshift/cluster-monitoring-operator/tree/b6972ecf9ab9cbca00536b2d8e3f55d2366efe31) * [OCPBUGS-937](https://issues.redhat.com/browse/OCPBUGS-937): Give precedence to CMO config map proxy config [#1762](https://github.com/openshift/cluster-monitoring-operator/pull/1762) * [OCPBUGS-641](https://issues.redhat.com/browse/OCPBUGS-641): grafana: bump to 7.5.11 [#1753](https://github.com/openshift/cluster-monitoring-operator/pull/1753) * [Bug 2030630](https://bugzilla.redhat.com/show_bug.cgi?id=2030630): jsonnet: update kube-prometheus and kubernetes-mixin [#1538](https://github.com/openshift/cluster-monitoring-operator/pull/1538) * [Bug 2059470](https://bugzilla.redhat.com/show_bug.cgi?id=2059470): Unable to connect external Grafana with Openshift Monitoring [#1549](https://github.com/openshift/cluster-monitoring-operator/pull/1549) * [Bug 2038406](https://bugzilla.redhat.com/show_bug.cgi?id=2038406): Add custom profile metric for Node Tuning Operator to telemetry [#1535](https://github.com/openshift/cluster-monitoring-operator/pull/1535) * [Bug 2021097](https://bugzilla.redhat.com/show_bug.cgi?id=2021097): Set Upgradeable: false when HA workloads are incorrectly spread [#1472](https://github.com/openshift/cluster-monitoring-operator/pull/1472) * [Bug 2018455](https://bugzilla.redhat.com/show_bug.cgi?id=2018455): Keep container_fs_usage_bytes metric [#1461](https://github.com/openshift/cluster-monitoring-operator/pull/1461) * [Bug 2015571](https://bugzilla.redhat.com/show_bug.cgi?id=2015571): [4.9] add kube_persistentvolumeclaim_labels and kube_persistentvolume_labels [#1457](https://github.com/openshift/cluster-monitoring-operator/pull/1457) * [Bug 2013617](https://bugzilla.redhat.com/show_bug.cgi?id=2013617): Update KubePodCrashLooping alert [#1448](https://github.com/openshift/cluster-monitoring-operator/pull/1448) * [Full changelog](https://github.com/openshift/cluster-monitoring-operator/compare/54e47a6f463edeb3bae240dbfa7bf4304ab59253...b6972ecf9ab9cbca00536b2d8e3f55d2366efe31) ### [cluster-network-operator](https://github.com/openshift/cluster-network-operator/tree/bb989612a2a49e3f7a8b3948a9b393bb6e4ea47c) * [OCPBUGS-5574](https://issues.redhat.com/browse/OCPBUGS-5574): CVE-2021-4238 goutils: RandomAlphaNumeric and CryptoRandomAlphaNumeric are not as random as they should be [#1683](https://github.com/openshift/cluster-network-operator/pull/1683) * [OCPBUGS-4788](https://issues.redhat.com/browse/OCPBUGS-4788): ipsec: Run ovs-monitor-ipsec in the foreground and change probes [#1664](https://github.com/openshift/cluster-network-operator/pull/1664) * Jira OCPBUGS-3854: IPsec: Fix broken counter++ expression [#1653](https://github.com/openshift/cluster-network-operator/pull/1653) * [Bug 2101915](https://bugzilla.redhat.com/show_bug.cgi?id=2101915): Make the use of the ip-reconciler cronjob opt-in [backport 4.9] [#1501](https://github.com/openshift/cluster-network-operator/pull/1501) * [OCPBUGS-2594](https://issues.redhat.com/browse/OCPBUGS-2594): Make northd probe interval default to 10 seconds [#1593](https://github.com/openshift/cluster-network-operator/pull/1593) * [Bug 2095112](https://bugzilla.redhat.com/show_bug.cgi?id=2095112): ovn: fix northd preStop command handling [#1478](https://github.com/openshift/cluster-network-operator/pull/1478) * Bug OCPBUGS-1514: Kuryr: Bump timeoutSeconds for livenessProbe [#1562](https://github.com/openshift/cluster-network-operator/pull/1562) * [Bug 2101092](https://bugzilla.redhat.com/show_bug.cgi?id=2101092): OCPVE-106 Customize rollout strategy to fix SNO upgrade [#1500](https://github.com/openshift/cluster-network-operator/pull/1500) * [Bug 2093978](https://bugzilla.redhat.com/show_bug.cgi?id=2093978): Drop Node update permission for sdn-node [#1476](https://github.com/openshift/cluster-network-operator/pull/1476) * [Bug 2092265](https://bugzilla.redhat.com/show_bug.cgi?id=2092265): Cleanup CNO relatedObjects [#1468](https://github.com/openshift/cluster-network-operator/pull/1468) * [Bug 2083079](https://bugzilla.redhat.com/show_bug.cgi?id=2083079): Reserve port TCP/9104 for cluster-network-operator [#1429](https://github.com/openshift/cluster-network-operator/pull/1429) * [Bug 2085463](https://bugzilla.redhat.com/show_bug.cgi?id=2085463): Add default-route field to egress-router k8s.v1.cni.cncf.io/networks [#1444](https://github.com/openshift/cluster-network-operator/pull/1444) * Adds dougbtv to owners [release-4.9] [#1402](https://github.com/openshift/cluster-network-operator/pull/1402) * [Bug 2058673](https://bugzilla.redhat.com/show_bug.cgi?id=2058673): ip-reconciler cronjob specification requires hostnetwork, api-int lb usage & proper backoff [backport 4.9] [#1323](https://github.com/openshift/cluster-network-operator/pull/1323) * [Bug 2057957](https://bugzilla.redhat.com/show_bug.cgi?id=2057957): Do not apply OVN-Kubernetes `PodDisruptionBudget` on single-node clusters [#1316](https://github.com/openshift/cluster-network-operator/pull/1316) * [release 4.9] Updates owners [#1333](https://github.com/openshift/cluster-network-operator/pull/1333) * [Bug 2040530](https://bugzilla.redhat.com/show_bug.cgi?id=2040530): ovn: try to gracefully terminate ovn-northd and ovsdb [#1279](https://github.com/openshift/cluster-network-operator/pull/1279) * [Bug 2046476](https://bugzilla.redhat.com/show_bug.cgi?id=2046476): sbdb and nbdb containers leave pid around if they restarted or crashed [#1291](https://github.com/openshift/cluster-network-operator/pull/1291) * [Bug 2038252](https://bugzilla.redhat.com/show_bug.cgi?id=2038252): Backport 4.9 OVN drop icmp frag from other nodes on Azure cluster [#1273](https://github.com/openshift/cluster-network-operator/pull/1273) * [Bug 2034351](https://bugzilla.redhat.com/show_bug.cgi?id=2034351): Whereabouts IP Reconciliaton [backport 4.9] [#1264](https://github.com/openshift/cluster-network-operator/pull/1264) * [Bug 2023423](https://bugzilla.redhat.com/show_bug.cgi?id=2023423): Add ip6tables NOTRACK rules for udp/6081 [#1229](https://github.com/openshift/cluster-network-operator/pull/1229) * [Bug 2037499](https://bugzilla.redhat.com/show_bug.cgi?id=2037499): Bump openshift/build-machinery-go [#1270](https://github.com/openshift/cluster-network-operator/pull/1270) * [Bug 2028961](https://bugzilla.redhat.com/show_bug.cgi?id=2028961): [release-4.9] Set upgrade strategy on kube-proxy [#1239](https://github.com/openshift/cluster-network-operator/pull/1239) * [Bug 2014021](https://bugzilla.redhat.com/show_bug.cgi?id=2014021): Use proxy to connect to OSP cloud [#1201](https://github.com/openshift/cluster-network-operator/pull/1201) * [Full changelog](https://github.com/openshift/cluster-network-operator/compare/8437b077d5700f3b4f484f34717c939faf90c5e2...bb989612a2a49e3f7a8b3948a9b393bb6e4ea47c) ### [cluster-node-tuning-operator](https://github.com/openshift/cluster-node-tuning-operator/tree/cadc2f1d62ccad30823cbb333872859bbb557bc9) * [Bug 2017066](https://bugzilla.redhat.com/show_bug.cgi?id=2017066): openshift profile: fix malformed patch [#284](https://github.com/openshift/cluster-node-tuning-operator/pull/284) * [Full changelog](https://github.com/openshift/cluster-node-tuning-operator/compare/2a863dcf854a6b136866d482286033028ec8ef72...cadc2f1d62ccad30823cbb333872859bbb557bc9) ### [cluster-openshift-apiserver-operator](https://github.com/openshift/cluster-openshift-apiserver-operator/tree/3b9b8286ca48a7a78f7d70a3befbf9c46c6b12e0) * [release 4.10] Bug 2109399: openshift-apiserver pods never going NotReady [#502](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/502) * [Bug 2047331](https://bugzilla.redhat.com/show_bug.cgi?id=2047331): global pull secret not working in OCP4.7.4+ for additio… [#491](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/491) * [Bug 2029504](https://bugzilla.redhat.com/show_bug.cgi?id=2029504): encryption-controller: sync secrets conditionally [#487](https://github.com/openshift/cluster-openshift-apiserver-operator/pull/487) * [Full changelog](https://github.com/openshift/cluster-openshift-apiserver-operator/compare/4cc29cff25abd99f618d7f893f5190ff44f7f901...3b9b8286ca48a7a78f7d70a3befbf9c46c6b12e0) ### [cluster-samples-operator](https://github.com/openshift/cluster-samples-operator/tree/9b0a9d769ef38f9f56a8b1a7900e458b526523a8) * [Bug 2010136](https://bugzilla.redhat.com/show_bug.cgi?id=2010136): Including Template in must-gather related objects. [#401](https://github.com/openshift/cluster-samples-operator/pull/401) * [Bug 2009722](https://bugzilla.redhat.com/show_bug.cgi?id=2009722): acccount for image api returning invalid on imagestream create based on allowed/blocked registry settings [#400](https://github.com/openshift/cluster-samples-operator/pull/400) * [Full changelog](https://github.com/openshift/cluster-samples-operator/compare/49a97d32181155a70013c4b239643d66cb47f85c...9b0a9d769ef38f9f56a8b1a7900e458b526523a8) ### [cluster-storage-operator](https://github.com/openshift/cluster-storage-operator/tree/0b44295597fbebf97219fcb80b6e7522e9e86fd3) * [Bug 2102760](https://bugzilla.redhat.com/show_bug.cgi?id=2102760): Add missing ibm cloud annotations to prometheus rbac [#294](https://github.com/openshift/cluster-storage-operator/pull/294) * [Bug 2084219](https://bugzilla.redhat.com/show_bug.cgi?id=2084219): Fix RelatedObjects when an API is missing in the API server [#281](https://github.com/openshift/cluster-storage-operator/pull/281) * [Full changelog](https://github.com/openshift/cluster-storage-operator/compare/2e76e02cb8479784a582e57a587be8fd5d75cae2...0b44295597fbebf97219fcb80b6e7522e9e86fd3) ### [cluster-update-keys](https://github.com/openshift/cluster-update-keys/tree/7f749f995ccc4657303ec0e365e9918865459605) * Updating ose-cluster-update-keys images to be consistent with ART [#38](https://github.com/openshift/cluster-update-keys/pull/38) * [Full changelog](https://github.com/openshift/cluster-update-keys/compare/3e20043304c204cc82935b5c510654702db8f8dd...7f749f995ccc4657303ec0e365e9918865459605) ### [cluster-version-operator](https://github.com/openshift/cluster-version-operator/tree/324c267460d913c4b83d1aad649fc5165d5f05b0) * [OCPBUGS-230](https://issues.redhat.com/browse/OCPBUGS-230): lib/resourcebuilder/batch: Stop waiting on Job deadline exceeded [#823](https://github.com/openshift/cluster-version-operator/pull/823) * [Bug 2108619](https://bugzilla.redhat.com/show_bug.cgi?id=2108619): pkg/cvo: retain initial completed update history entry [#799](https://github.com/openshift/cluster-version-operator/pull/799) * [Bug 2091806](https://bugzilla.redhat.com/show_bug.cgi?id=2091806): pkg/cvo: Separate payload load from payload apply [#786](https://github.com/openshift/cluster-version-operator/pull/786) * [Bug 2032125](https://bugzilla.redhat.com/show_bug.cgi?id=2032125): lib/resourcemerge/core: Merge volumeMounts by mountPath [#715](https://github.com/openshift/cluster-version-operator/pull/715) * [Bug 2055314](https://bugzilla.redhat.com/show_bug.cgi?id=2055314): Fixing the sync issue when desired version and channel changed at the same time [#742](https://github.com/openshift/cluster-version-operator/pull/742) * [Bug 2038275](https://bugzilla.redhat.com/show_bug.cgi?id=2038275): *: Use --v=2 logging to drop client-side throttling noise [#723](https://github.com/openshift/cluster-version-operator/pull/723) * [Bug 2028602](https://bugzilla.redhat.com/show_bug.cgi?id=2028602): lib/resourcemerge/apps: Default Deployment replicas to one [#702](https://github.com/openshift/cluster-version-operator/pull/702) * [Bug 2024588](https://bugzilla.redhat.com/show_bug.cgi?id=2024588): Changing the ClusterNotUpgradeable alert to info [#693](https://github.com/openshift/cluster-version-operator/pull/693) * [Bug 2022570](https://bugzilla.redhat.com/show_bug.cgi?id=2022570): cvo: Compare manifest group in getOverrideForManifest [#690](https://github.com/openshift/cluster-version-operator/pull/690) * [Bug 2015024](https://bugzilla.redhat.com/show_bug.cgi?id=2015024): lib/resourcemerge/imagestream.go: Copy all data for new tag reference [#678](https://github.com/openshift/cluster-version-operator/pull/678) * [Full changelog](https://github.com/openshift/cluster-version-operator/compare/1f15159db6928ce89ab7192a4c2f26d1dabc833c...324c267460d913c4b83d1aad649fc5165d5f05b0) ### [configmap-reloader](https://github.com/openshift/configmap-reload/tree/c0418991b950d79b206891156d67ae1b0b69a074) * [OCPBUGS-6537](https://issues.redhat.com/browse/OCPBUGS-6537): go.mod: update github.com/prometheus/client_golang to v1.11.0 [#50](https://github.com/openshift/configmap-reload/pull/50) * [Full changelog](https://github.com/openshift/configmap-reload/compare/b84b5bf9c3b84e65ebead7e9e35ddf6454bb33ce...c0418991b950d79b206891156d67ae1b0b69a074) ### [console](https://github.com/openshift/console/tree/6fa7856decb36809cfb90a0ffe13d76f198d88c7) * [OCPBUGS-53](https://issues.redhat.com/browse/OCPBUGS-53): Non-existing link in the "Learn more about OpenShift update channels" in "Select Channel" pop-up. [#12440](https://github.com/openshift/console/pull/12440) * [OCPBUGS-6694](https://issues.redhat.com/browse/OCPBUGS-6694): Fix NPE when displaying CSV with incomplete information [#12482](https://github.com/openshift/console/pull/12482) * [Bug 2105912](https://bugzilla.redhat.com/show_bug.cgi?id=2105912): Fix create-namespace e2e test with updated 3scale operator [#11813](https://github.com/openshift/console/pull/11813) * [OCPBUGS-3886](https://issues.redhat.com/browse/OCPBUGS-3886): Add checks for pods in hpaPodRingLabel [#12281](https://github.com/openshift/console/pull/12281) * [OCPBUGS-2718](https://issues.redhat.com/browse/OCPBUGS-2718): Update dependencies to the registry library and devfile parser [#12192](https://github.com/openshift/console/pull/12192) * [Bug 2094244](https://bugzilla.redhat.com/show_bug.cgi?id=2094244): Add 'Unavailable' status to clusteroperator status filter [#11658](https://github.com/openshift/console/pull/11658) * [OCPBUGS-2008](https://issues.redhat.com/browse/OCPBUGS-2008): Show already loaded catalog items after a timeout (3sec) [#12136](https://github.com/openshift/console/pull/12136) * [OCPBUGS-2173](https://issues.redhat.com/browse/OCPBUGS-2173): do not show NodesUpdateGroup if there are 0 nodes [#12153](https://github.com/openshift/console/pull/12153) * [OCPBUGS-2576](https://issues.redhat.com/browse/OCPBUGS-2576), [OCPBUGS-2719](https://issues.redhat.com/browse/OCPBUGS-2719): Fix backend test (devfile registry change), fix console e2e test (3scale operator name change) [#12201](https://github.com/openshift/console/pull/12201) * [OCPBUGS-1956](https://issues.redhat.com/browse/OCPBUGS-1956): fetch shared resource imagestreams based on labels instance or name [#12126](https://github.com/openshift/console/pull/12126) * [OCPBUGS-1635](https://issues.redhat.com/browse/OCPBUGS-1635): Update registry library dependency to pick up proxy support [#12041](https://github.com/openshift/console/pull/12041) * [OCPBUGS-1981](https://issues.redhat.com/browse/OCPBUGS-1981): Fix devfile registry assertion [#12133](https://github.com/openshift/console/pull/12133) * [Bug 2114863](https://bugzilla.redhat.com/show_bug.cgi?id=2114863): fix bug where Cluster update modal errors weren't displa… [#11926](https://github.com/openshift/console/pull/11926) * [Bug 2117608](https://bugzilla.redhat.com/show_bug.cgi?id=2117608): use the correct Alertmanager tenancy proxy [#11954](https://github.com/openshift/console/pull/11954) * [Bug 2077141](https://bugzilla.redhat.com/show_bug.cgi?id=2077141): Fix Web Terminal availability check to verify operator is installed [#11373](https://github.com/openshift/console/pull/11373) * [OCPBUGS-686](https://issues.redhat.com/browse/OCPBUGS-686): fix helm readme bug [#11986](https://github.com/openshift/console/pull/11986) * [OCPBUGS-695](https://issues.redhat.com/browse/OCPBUGS-695): Input values in Instantiate Template are disappeared randomly in the developer console [#12002](https://github.com/openshift/console/pull/12002) * [OCPBUGS-410](https://issues.redhat.com/browse/OCPBUGS-410): show Limit exceeded state for large number of nodes in topology [#11973](https://github.com/openshift/console/pull/11973) * [Bug 2097724](https://bugzilla.redhat.com/show_bug.cgi?id=2097724): Change Ping source spec.jsonData (deprecated) field to spec.data [#11720](https://github.com/openshift/console/pull/11720) * [OCPBUGS-508](https://issues.redhat.com/browse/OCPBUGS-508): Backport CI test fix to relase 4.10 [#11977](https://github.com/openshift/console/pull/11977) * [Bug 2089592](https://bugzilla.redhat.com/show_bug.cgi?id=2089592): [release-4.9] Add debounce to tektonhub versions api call to avoid many calls [#11553](https://github.com/openshift/console/pull/11553) * [Bug 2093910](https://bugzilla.redhat.com/show_bug.cgi?id=2093910): change metrics queries based on metrics level configurations [#11644](https://github.com/openshift/console/pull/11644) * [Bug 2097618](https://bugzilla.redhat.com/show_bug.cgi?id=2097618): Avoid using 'gp2' hardcoded storage class [#11716](https://github.com/openshift/console/pull/11716) * [Bug 2068203](https://bugzilla.redhat.com/show_bug.cgi?id=2068203): Sample catalog is not displayed when one API call to the backend fails [#11616](https://github.com/openshift/console/pull/11616) * [Bug 2084496](https://bugzilla.redhat.com/show_bug.cgi?id=2084496): fix bug where "Update blocked" label incorrectly displa… [#11484](https://github.com/openshift/console/pull/11484) * [Bug 2097554](https://bugzilla.redhat.com/show_bug.cgi?id=2097554): Fix failing backend test after devfile registry update [#11714](https://github.com/openshift/console/pull/11714) * [Bug 2082493](https://bugzilla.redhat.com/show_bug.cgi?id=2082493): - Rolebindings page doesn't load for normal users [#11630](https://github.com/openshift/console/pull/11630) * [Bug 2084028](https://bugzilla.redhat.com/show_bug.cgi?id=2084028): Improve Firehose cache, fix broken import [#11554](https://github.com/openshift/console/pull/11554) * [Bug 2089847](https://bugzilla.redhat.com/show_bug.cgi?id=2089847): Set dashboards timeout based on selected timespan [#11561](https://github.com/openshift/console/pull/11561) * [Bug 2076690](https://bugzilla.redhat.com/show_bug.cgi?id=2076690): fix bug where RoleBindings are not displaying in ClusterRole > RoleBindings [#11362](https://github.com/openshift/console/pull/11362) * [Bug 2081389](https://bugzilla.redhat.com/show_bug.cgi?id=2081389): Translate Extensions On Each Language Change [#11430](https://github.com/openshift/console/pull/11430) * [Bug 2089546](https://bugzilla.redhat.com/show_bug.cgi?id=2089546): [release-4.9] Eliminate use of lookaside cache and move to Cachito [#11519](https://github.com/openshift/console/pull/11519) * [Bug 2084028](https://bugzilla.redhat.com/show_bug.cgi?id=2084028): Improve Firehose cache, so that it does not return unexpected data also if isList differs on two concurrent calls [#11476](https://github.com/openshift/console/pull/11476) * [Bug 2030408](https://bugzilla.redhat.com/show_bug.cgi?id=2030408): Disable replacement procedure from ODF UI [#11483](https://github.com/openshift/console/pull/11483) * [Bug 2079231](https://bugzilla.redhat.com/show_bug.cgi?id=2079231): fix bug where ClusterRole > RoleBindings did not display… [#11405](https://github.com/openshift/console/pull/11405) * [Bug 2048631](https://bugzilla.redhat.com/show_bug.cgi?id=2048631): missing volumes list in snapshot modal [#10984](https://github.com/openshift/console/pull/10984) * [Bug 2046016](https://bugzilla.redhat.com/show_bug.cgi?id=2046016): SnapShot with Disk Hot-plug hangs [#10959](https://github.com/openshift/console/pull/10959) * [Bug 2078554](https://bugzilla.redhat.com/show_bug.cgi?id=2078554): - Roles -> RoleBindings tab doesn't show RoleBindings correctly [#11392](https://github.com/openshift/console/pull/11392) * [Bug 2070827](https://bugzilla.redhat.com/show_bug.cgi?id=2070827): Pipeline metrics: use prometheus-tenancy API to get data [#11270](https://github.com/openshift/console/pull/11270) * [Bug 2073999](https://bugzilla.redhat.com/show_bug.cgi?id=2073999): avoid pre-fetching tekton hub task versions [#11312](https://github.com/openshift/console/pull/11312) * [Bug 2066771](https://bugzilla.redhat.com/show_bug.cgi?id=2066771): Enhance Insights widget empty states [#11218](https://github.com/openshift/console/pull/11218) * [Bug 2069258](https://bugzilla.redhat.com/show_bug.cgi?id=2069258): Decode secrets before authorizing repository [#11243](https://github.com/openshift/console/pull/11243) * [Bug 2071579](https://bugzilla.redhat.com/show_bug.cgi?id=2071579): fix RoleBindings list page filter [#11279](https://github.com/openshift/console/pull/11279) * [Bug 2077003](https://bugzilla.redhat.com/show_bug.cgi?id=2077003): Fix failing TestGetRegistrySamples test [#11368](https://github.com/openshift/console/pull/11368) * [Bug 2071692](https://bugzilla.redhat.com/show_bug.cgi?id=2071692): Backport add-flow e2e tests to 4.9 [#11300](https://github.com/openshift/console/pull/11300) * -Bug 2021595: Key value field is not getting updated under Environment Tab in OpenShift Web Console [#11176](https://github.com/openshift/console/pull/11176) * [Bug 2064454](https://bugzilla.redhat.com/show_bug.cgi?id=2064454): return process data as array for list true in firehose as done in hooks [#11256](https://github.com/openshift/console/pull/11256) * [Bug 2066298](https://bugzilla.redhat.com/show_bug.cgi?id=2066298): fix ClusterOperator Status, Version col sorts [#11206](https://github.com/openshift/console/pull/11206) * [Bug 2065549](https://bugzilla.redhat.com/show_bug.cgi?id=2065549): Change the tekton hub api endpoint to use v1 api [#11197](https://github.com/openshift/console/pull/11197) * [Bug 2060449](https://bugzilla.redhat.com/show_bug.cgi?id=2060449): Fix potential issues with namespaces that contains just numbers [#11133](https://github.com/openshift/console/pull/11133) * [Bug 2021702](https://bugzilla.redhat.com/show_bug.cgi?id=2021702): Render correct conditions for csv vs installplan and subscriptioncondition [#10423](https://github.com/openshift/console/pull/10423) * [Bug 2064454](https://bugzilla.redhat.com/show_bug.cgi?id=2064454): (Topology) Performance improvement by reducing rerenderings and deep-copy toJSON() calls [#11184](https://github.com/openshift/console/pull/11184) * [Bug 2033712](https://bugzilla.redhat.com/show_bug.cgi?id=2033712): Update CSR model & fix approval/denial process [#10690](https://github.com/openshift/console/pull/10690) * [Bug 2055293](https://bugzilla.redhat.com/show_bug.cgi?id=2055293): Sum total memory of unnamed container only [#11073](https://github.com/openshift/console/pull/11073) * [Bug 2046641](https://bugzilla.redhat.com/show_bug.cgi?id=2046641): Add warning alert when installing operator to non suggested namespace [#10944](https://github.com/openshift/console/pull/10944) * [Bug 2055100](https://bugzilla.redhat.com/show_bug.cgi?id=2055100): Revert "Add Dev Preview tag for IBM FlashSystem" [#11068](https://github.com/openshift/console/pull/11068) * [Bug 2054608](https://bugzilla.redhat.com/show_bug.cgi?id=2054608): omit rolebindings with no subjects [#11055](https://github.com/openshift/console/pull/11055) * [Bug 2056826](https://bugzilla.redhat.com/show_bug.cgi?id=2056826): Revert "Merge pull request #10316 from dtaylor113/e2e-tests-replace-codeready-operator" [#11087](https://github.com/openshift/console/pull/11087) * [Bug 2052553](https://bugzilla.redhat.com/show_bug.cgi?id=2052553): Add 'Unavailable' status for cluster operator [#10125](https://github.com/openshift/console/pull/10125) * [Bug 2050271](https://bugzilla.redhat.com/show_bug.cgi?id=2050271): show latest pipelinerun on the top of the list [#11019](https://github.com/openshift/console/pull/11019) * [Bug 2033274](https://bugzilla.redhat.com/show_bug.cgi?id=2033274): Fix tektonhub task upgrading issue [#10678](https://github.com/openshift/console/pull/10678) * [Bug 2051523](https://bugzilla.redhat.com/show_bug.cgi?id=2051523): change the Image Vulnerabilities tab to be project and not cluster scoped [#10159](https://github.com/openshift/console/pull/10159) * [Bug 2053496](https://bugzilla.redhat.com/show_bug.cgi?id=2053496): Monitoring: use namespace to detect the activePerspective instead of useActivePerspective hook [#11042](https://github.com/openshift/console/pull/11042) * [Bug 2052850](https://bugzilla.redhat.com/show_bug.cgi?id=2052850): Refreshing console from toaster taking to Install Operator [#11025](https://github.com/openshift/console/pull/11025) * [Bug 2047350](https://bugzilla.redhat.com/show_bug.cgi?id=2047350): Fix TypeError when application has HelmRelease [#10990](https://github.com/openshift/console/pull/10990) * [Bug 2026553](https://bugzilla.redhat.com/show_bug.cgi?id=2026553): Dispatch name filter value to redux [#10553](https://github.com/openshift/console/pull/10553) * [Bug 2022158](https://bugzilla.redhat.com/show_bug.cgi?id=2022158): omit extension when code ref resolution fails [#10435](https://github.com/openshift/console/pull/10435) * [Bug 2023339](https://bugzilla.redhat.com/show_bug.cgi?id=2023339): fix broken Argo CD link image [#10461](https://github.com/openshift/console/pull/10461) * [Bug 2026414](https://bugzilla.redhat.com/show_bug.cgi?id=2026414): use prometheus tenancy URL to load data in devconsole observe dashboard [#10961](https://github.com/openshift/console/pull/10961) * [Bug 2041434](https://bugzilla.redhat.com/show_bug.cgi?id=2041434): Monitoring: show a error message if wrong dashboard name is passed to the URL [#10857](https://github.com/openshift/console/pull/10857) * [Bug 2047633](https://bugzilla.redhat.com/show_bug.cgi?id=2047633): Fix that export download model wasn't shown when primer export finished [#10965](https://github.com/openshift/console/pull/10965) * [Bug 2040296](https://bugzilla.redhat.com/show_bug.cgi?id=2040296): Enable error stack trace messages to scroll [#10072](https://github.com/openshift/console/pull/10072) * [Bug 2042041](https://bugzilla.redhat.com/show_bug.cgi?id=2042041): Console 2969: Changes to the project selector to allow system namespaces that are Favorited to be included in the Favorited list even when the option to Show default projects is unselected. [#10886](https://github.com/openshift/console/pull/10886) * [Bug 2030128](https://bugzilla.redhat.com/show_bug.cgi?id=2030128): Fix pipeline builder edge spacing to avoid improper edge shapes [#10629](https://github.com/openshift/console/pull/10629) * [Bug 2044292](https://bugzilla.redhat.com/show_bug.cgi?id=2044292): Filter superseded helm secrets and fix firehose to support partial metadata [#10915](https://github.com/openshift/console/pull/10915) * [release 4.9] Bug 2042683: Check rbac before polling for rules silences [#10888](https://github.com/openshift/console/pull/10888) * [Bug 2044287](https://bugzilla.redhat.com/show_bug.cgi?id=2044287): Add support for fetching partial metadata and fix helm list page crash [#10914](https://github.com/openshift/console/pull/10914) * [Bug 2044259](https://bugzilla.redhat.com/show_bug.cgi?id=2044259): Topology performance: Do not fetch HPA for each Deployment (Pod Ring) [#10913](https://github.com/openshift/console/pull/10913) * [Bug 2042456](https://bugzilla.redhat.com/show_bug.cgi?id=2042456): Check if name label exists before comparing [#10882](https://github.com/openshift/console/pull/10882) * [Bug 2036340](https://bugzilla.redhat.com/show_bug.cgi?id=2036340): Fix secure route pre-filled issue in edit flow [#10759](https://github.com/openshift/console/pull/10759) * [Bug 2027804](https://bugzilla.redhat.com/show_bug.cgi?id=2027804): use namespace instead of useActivePerspective hooks to get the variables in Observe dashboard [#10586](https://github.com/openshift/console/pull/10586) * [Bug 2027269](https://bugzilla.redhat.com/show_bug.cgi?id=2027269): Add subject name selector field to SinkBinding form [#10568](https://github.com/openshift/console/pull/10568) * [Bug 2027268](https://bugzilla.redhat.com/show_bug.cgi?id=2027268): Optimize name validation regex for forms [#10567](https://github.com/openshift/console/pull/10567) * [Bug 2019884](https://bugzilla.redhat.com/show_bug.cgi?id=2019884): adds feature flag for all extension for knative plugin [#10393](https://github.com/openshift/console/pull/10393) * [Bug 2038607](https://bugzilla.redhat.com/show_bug.cgi?id=2038607): Fix that user settings ConfigMap is also created for users with restricted access [#10799](https://github.com/openshift/console/pull/10799) * [Bug 2036115](https://bugzilla.redhat.com/show_bug.cgi?id=2036115): add support for new labels for serverless function [#10755](https://github.com/openshift/console/pull/10755) * [Bug 2013253](https://bugzilla.redhat.com/show_bug.cgi?id=2013253): Fix to let the user create the application even if dockerfile is not detected [#10216](https://github.com/openshift/console/pull/10216) * [Bug 2036859](https://bugzilla.redhat.com/show_bug.cgi?id=2036859): Shift invalid devfile alert down [#10766](https://github.com/openshift/console/pull/10766) * [Bug 2034183](https://bugzilla.redhat.com/show_bug.cgi?id=2034183): Open export details page from the resource link on the topology sidepanel [#10694](https://github.com/openshift/console/pull/10694) * [Bug 2033265](https://bugzilla.redhat.com/show_bug.cgi?id=2033265): Fix an error to show Knative Services and Revisions also if the Service has no owner revision [#10677](https://github.com/openshift/console/pull/10677) * [Bug 2029861](https://bugzilla.redhat.com/show_bug.cgi?id=2029861): backport the change from #10394 to release 4.9 [#10620](https://github.com/openshift/console/pull/10620) * [Bug 2029370](https://bugzilla.redhat.com/show_bug.cgi?id=2029370): Trim the strings before localCompare [#10611](https://github.com/openshift/console/pull/10611) * [Bug 2025799](https://bugzilla.redhat.com/show_bug.cgi?id=2025799): Remove Tech preview badge for the triggers component for triggers GA … [#10535](https://github.com/openshift/console/pull/10535) * [Bug 2044089](https://bugzilla.redhat.com/show_bug.cgi?id=2044089): Update CRW operator name to fix failing e2e tests [#10910](https://github.com/openshift/console/pull/10910) * [Bug 2040365](https://bugzilla.redhat.com/show_bug.cgi?id=2040365): Check if 'auths' key when switching between create image secret subforms [#10838](https://github.com/openshift/console/pull/10838) * [Bug 2034636](https://bugzilla.redhat.com/show_bug.cgi?id=2034636): - RoleBindings tab doesn't show correct rolebindings [#10711](https://github.com/openshift/console/pull/10711) * [Bug 2037619](https://bugzilla.redhat.com/show_bug.cgi?id=2037619): Could not filter out machine by using node name on machines page (temp fix) [#10807](https://github.com/openshift/console/pull/10807) * [Bug 2040291](https://bugzilla.redhat.com/show_bug.cgi?id=2040291): Prevent null references and "ResizeObserver loop limit exceeded" errors in IFrameMarkdownView [#10116](https://github.com/openshift/console/pull/10116) * [Bug 2034829](https://bugzilla.redhat.com/show_bug.cgi?id=2034829): cant delete VM with un-owned pvc attached [#10719](https://github.com/openshift/console/pull/10719) * [Bug 2028286](https://bugzilla.redhat.com/show_bug.cgi?id=2028286): Fix blank page error for Installed Operators [#10596](https://github.com/openshift/console/pull/10596) * [Bug 2029378](https://bugzilla.redhat.com/show_bug.cgi?id=2029378): Fix NodePort RDP bug [#10612](https://github.com/openshift/console/pull/10612) * [Bug 2026243](https://bugzilla.redhat.com/show_bug.cgi?id=2026243): Fixes add capacity for MCG standalone [#10544](https://github.com/openshift/console/pull/10544) * [Bug 2025937](https://bugzilla.redhat.com/show_bug.cgi?id=2025937): KMS resources not getting created for IBM FlashSystem storage [#10540](https://github.com/openshift/console/pull/10540) * [Bug 2029297](https://bugzilla.redhat.com/show_bug.cgi?id=2029297): Fix troubleshoot link for MON_DISK_LOW [#10609](https://github.com/openshift/console/pull/10609) * [Bug 2026618](https://bugzilla.redhat.com/show_bug.cgi?id=2026618): Add Dev Preview tag for IBM FlashSystem [#10555](https://github.com/openshift/console/pull/10555) * [Bug 2026219](https://bugzilla.redhat.com/show_bug.cgi?id=2026219): Fix Noobaa resources broken details pages [#10543](https://github.com/openshift/console/pull/10543) * [Bug 2028535](https://bugzilla.redhat.com/show_bug.cgi?id=2028535): Backing Store YAML tab on click displays a blank screen on UI [#10603](https://github.com/openshift/console/pull/10603) * [Bug 2022446](https://bugzilla.redhat.com/show_bug.cgi?id=2022446): Fix issue with standalone dashboards (4.9 backport) [#10441](https://github.com/openshift/console/pull/10441) * [Bug 2022303](https://bugzilla.redhat.com/show_bug.cgi?id=2022303): Fix creation of ibm storage system at backing storage step [#10438](https://github.com/openshift/console/pull/10438) * [Bug 2022462](https://bugzilla.redhat.com/show_bug.cgi?id=2022462): Set large width for modals with modal-lg class [#10442](https://github.com/openshift/console/pull/10442) * [Bug 2020000](https://bugzilla.redhat.com/show_bug.cgi?id=2020000): Fix resource metrics 403 errors for project admin users [#10396](https://github.com/openshift/console/pull/10396) * [Bug 2021527](https://bugzilla.redhat.com/show_bug.cgi?id=2021527): Fix ClusterOperators link [#10417](https://github.com/openshift/console/pull/10417) * [Bug 2023285](https://bugzilla.redhat.com/show_bug.cgi?id=2023285): #cloud-config is now added to yaml [#10459](https://github.com/openshift/console/pull/10459) * [Bug 2016602](https://bugzilla.redhat.com/show_bug.cgi?id=2016602): ODF tab is missing if user clicks on 'Refresh web console' [#10295](https://github.com/openshift/console/pull/10295) * [Bug 2017722](https://bugzilla.redhat.com/show_bug.cgi?id=2017722): Fix creation for BackingStore, BucketClass and NamespaceStore [#10340](https://github.com/openshift/console/pull/10340) * [Bug 2016939](https://bugzilla.redhat.com/show_bug.cgi?id=2016939): Block MCG deploymeny when no storage class found [#10304](https://github.com/openshift/console/pull/10304) * [Bug 2017717](https://bugzilla.redhat.com/show_bug.cgi?id=2017717): Use conditions for status in Storage System list page [#10339](https://github.com/openshift/console/pull/10339) * [Bug 2018637](https://bugzilla.redhat.com/show_bug.cgi?id=2018637): Pass pod toolbar filters to `useListPageFilter` [#10366](https://github.com/openshift/console/pull/10366) * [Bug 2019494](https://bugzilla.redhat.com/show_bug.cgi?id=2019494): Delete ssh service when vm is deleted [#10385](https://github.com/openshift/console/pull/10385) * [Bug 2019736](https://bugzilla.redhat.com/show_bug.cgi?id=2019736): PVC is deleted along with VM even with "Delete Disks" unchecked [#10391](https://github.com/openshift/console/pull/10391) * [Bug 2010677](https://bugzilla.redhat.com/show_bug.cgi?id=2010677): Update PatternFly/react-console [#10258](https://github.com/openshift/console/pull/10258) * [Bug 2015134](https://bugzilla.redhat.com/show_bug.cgi?id=2015134): Reveal the switch status of the button "Show default project" in code [#10252](https://github.com/openshift/console/pull/10252) * [Bug 2014303](https://bugzilla.redhat.com/show_bug.cgi?id=2014303): Fix wrong in-cluster hostname on the Service details page [#10246](https://github.com/openshift/console/pull/10246) * [Bug 2013105](https://bugzilla.redhat.com/show_bug.cgi?id=2013105): fixes imagestream from reference for alias to existing IS [#10212](https://github.com/openshift/console/pull/10212) * (4.9 Backport) Bug 2008142: Allow web terminal to be installed in any namespace [#10135](https://github.com/openshift/console/pull/10135) * [Bug 2017484](https://bugzilla.redhat.com/show_bug.cgi?id=2017484): Check for resource in ServiceBinding spec's service reference [#10327](https://github.com/openshift/console/pull/10327) * [Bug 2002905](https://bugzilla.redhat.com/show_bug.cgi?id=2002905): Fix list page route for build configs [#10043](https://github.com/openshift/console/pull/10043) * [Bug 1989798](https://bugzilla.redhat.com/show_bug.cgi?id=1989798): Fix state bug to eliminate duplicates in dragged files [#10131](https://github.com/openshift/console/pull/10131) * [Bug 2002006](https://bugzilla.redhat.com/show_bug.cgi?id=2002006): Allow side nav borders to extend to left and right edges of yaml sidebar [#10011](https://github.com/openshift/console/pull/10011) * [Bug 2014145](https://bugzilla.redhat.com/show_bug.cgi?id=2014145): Failed to load RoleBindings list that will lead to ‘Role name’ is not able to be selected on Create RoleBinding page as well [#10241](https://github.com/openshift/console/pull/10241) * [Bug 2011705](https://bugzilla.redhat.com/show_bug.cgi?id=2011705): fix dev-catalog stuck in loading state [#10198](https://github.com/openshift/console/pull/10198) * [Bug 2004075](https://bugzilla.redhat.com/show_bug.cgi?id=2004075): Fix to show image-tag selector in s2i form and re-validate git url on git-type change [#10067](https://github.com/openshift/console/pull/10067) * [Bug 2010160](https://bugzilla.redhat.com/show_bug.cgi?id=2010160): Clicking on the perspective switcher shows a white page with loader [#10169](https://github.com/openshift/console/pull/10169) * [Bug 2002856](https://bugzilla.redhat.com/show_bug.cgi?id=2002856): Dont validate the install operator form when submitted [#10041](https://github.com/openshift/console/pull/10041) * [Bug 2002600](https://bugzilla.redhat.com/show_bug.cgi?id=2002600): Enable add capacity if osd size is not matching [#10032](https://github.com/openshift/console/pull/10032) * [Bug 2008456](https://bugzilla.redhat.com/show_bug.cgi?id=2008456): Fix to fetch ocs csv in external mode [#10144](https://github.com/openshift/console/pull/10144) * [Bug 2003870](https://bugzilla.redhat.com/show_bug.cgi?id=2003870): Fix state of volume mode dropdown [#10062](https://github.com/openshift/console/pull/10062) * [Bug 2004567](https://bugzilla.redhat.com/show_bug.cgi?id=2004567): Fix basic spring boot sample form crash [#10076](https://github.com/openshift/console/pull/10076) * [Bug 2014095](https://bugzilla.redhat.com/show_bug.cgi?id=2014095): Monitoring: Fix error message when Silences fail to load [#10240](https://github.com/openshift/console/pull/10240) * [Bug 2013132](https://bugzilla.redhat.com/show_bug.cgi?id=2013132): Overview tab is missing under Storage after successful deployment on UI [#10214](https://github.com/openshift/console/pull/10214) * [Bug 2008499](https://bugzilla.redhat.com/show_bug.cgi?id=2008499): Add monitoring and nodes label for external storage platforms [#10146](https://github.com/openshift/console/pull/10146) * [Full changelog](https://github.com/openshift/console/compare/11293b4fc614363716d8bfe090d4e9431ab84b72...6fa7856decb36809cfb90a0ffe13d76f198d88c7) ### [console-operator](https://github.com/openshift/console-operator/tree/b3f14011e79970152c9be6e3068635cc94c904cd) * [Bug 2055494](https://bugzilla.redhat.com/show_bug.cgi?id=2055494): Distinguish between route conditions [#662](https://github.com/openshift/console-operator/pull/662) * [Bug 2055494](https://bugzilla.redhat.com/show_bug.cgi?id=2055494): console-operator should report Upgradeable False when SAN-less certs are used [#638](https://github.com/openshift/console-operator/pull/638) * [Bug 2075030](https://bugzilla.redhat.com/show_bug.cgi?id=2075030): Re-enable TestMetricsEndpoint e2e test case [#647](https://github.com/openshift/console-operator/pull/647) * [Bug 2039681](https://bugzilla.redhat.com/show_bug.cgi?id=2039681): Fix setting of custom cert for default route [#624](https://github.com/openshift/console-operator/pull/624) * [Bug 2040275](https://bugzilla.redhat.com/show_bug.cgi?id=2040275): Bump build-machinery-go for console-operator to pickup change in yaml-patch repository [#626](https://github.com/openshift/console-operator/pull/626) * [Bug 2008142](https://bugzilla.redhat.com/show_bug.cgi?id=2008142): Change web terminal subscription permissions from get to list [#596](https://github.com/openshift/console-operator/pull/596) * [Bug 2016028](https://bugzilla.redhat.com/show_bug.cgi?id=2016028): Correction/Changes in Quick Start Guides for ODF [#609](https://github.com/openshift/console-operator/pull/609) * [Bug 2010681](https://bugzilla.redhat.com/show_bug.cgi?id=2010681): Resync all controllers periodically [#600](https://github.com/openshift/console-operator/pull/600) * [Bug 2002878](https://bugzilla.redhat.com/show_bug.cgi?id=2002878): Remove SimpleHTTP 'server' response header value [#587](https://github.com/openshift/console-operator/pull/587) * [Full changelog](https://github.com/openshift/console-operator/compare/b8058325fabe6c1dea79e5465f6e68c45309fed9...b3f14011e79970152c9be6e3068635cc94c904cd) ### [container-networking-plugins](https://github.com/openshift/containernetworking-plugins/tree/eb5fcc1156afff3261deb50ed55283de3322b9fa) * [Bug 2101664](https://bugzilla.redhat.com/show_bug.cgi?id=2101664): Sysctl IFNAME [backport 4.9] [#64](https://github.com/openshift/containernetworking-plugins/pull/64) * [Full changelog](https://github.com/openshift/containernetworking-plugins/compare/44a49134de5e4d4cc136cc0862d35f226d61d3be...eb5fcc1156afff3261deb50ed55283de3322b9fa) ### [coredns](https://github.com/openshift/coredns/tree/e332b9e22f9cc9ab654b1113e74137c54c98b224) * [OCPBUGS-2903](https://issues.redhat.com/browse/OCPBUGS-2903): Remove bufsize hardcoding to 2048 on cache upstream refreshes. [#81](https://github.com/openshift/coredns/pull/81) * [Full changelog](https://github.com/openshift/coredns/compare/3cb11c075c7689a2178a03a5d22c5adff3efbd4d...e332b9e22f9cc9ab654b1113e74137c54c98b224) ### [csi-driver-manila, openstack-cinder-csi-driver, openstack-cloud-controller-manager](https://github.com/openshift/cloud-provider-openstack/tree/8314cc69ad5ad00ba4e6da6dcb4eb05e22fe48e7) * [OCPBUGS-6035](https://issues.redhat.com/browse/OCPBUGS-6035): Merge https://github.com/kubernetes/cloud-provider-openstack:release-1.22 into release-4.9 [#170](https://github.com/openshift/cloud-provider-openstack/pull/170) * [Full changelog](https://github.com/openshift/cloud-provider-openstack/compare/ddbc0e4f24a6a5f9bb0f75d15a95fd778ee587e5...8314cc69ad5ad00ba4e6da6dcb4eb05e22fe48e7) ### [csi-driver-manila-operator](https://github.com/openshift/csi-driver-manila-operator/tree/2f66df4fce6d1971985fb45ea2220a0ff3cf09ba) * [Bug 2110255](https://bugzilla.redhat.com/show_bug.cgi?id=2110255): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#152](https://github.com/openshift/csi-driver-manila-operator/pull/152) * [Full changelog](https://github.com/openshift/csi-driver-manila-operator/compare/fd2d838d18b74baefa5a20398cf54826c0a803f9...2f66df4fce6d1971985fb45ea2220a0ff3cf09ba) ### [docker-builder](https://github.com/openshift/builder/tree/1a32676c7a9b679da164b916b759f414f7071fbf) * [Bug 2050287](https://bugzilla.redhat.com/show_bug.cgi?id=2050287): Update buildah to v1.22.4 [#285](https://github.com/openshift/builder/pull/285) * [Bug 2042444](https://bugzilla.redhat.com/show_bug.cgi?id=2042444): getAssembleUser(): strip the group part out before checking the UID [#280](https://github.com/openshift/builder/pull/280) * [Bug 2037776](https://bugzilla.redhat.com/show_bug.cgi?id=2037776): Update containers/storage to address incorrect overlay options being set on rhel7 nodes [#279](https://github.com/openshift/builder/pull/279) * [Bug 2022866](https://bugzilla.redhat.com/show_bug.cgi?id=2022866): bump github.com/containers/buildah to v1.22.3 [#272](https://github.com/openshift/builder/pull/272) * [Full changelog](https://github.com/openshift/builder/compare/50d5b91b77c33d9f62f06cf44d4ea6a41a65f3a5...1a32676c7a9b679da164b916b759f414f7071fbf) ### [docker-registry](https://github.com/openshift/image-registry/tree/ae662c8dc3fd8ddbd3e076330044526cf120f817) * [Bug 2086864](https://bugzilla.redhat.com/show_bug.cgi?id=2086864): Fix ICSP for subrepositories [#333](https://github.com/openshift/image-registry/pull/333) * [Bug 2060363](https://bugzilla.redhat.com/show_bug.cgi?id=2060363): Fix s3 driver for supporting ceph radosgw [#327](https://github.com/openshift/image-registry/pull/327) * [Bug 2053222](https://bugzilla.redhat.com/show_bug.cgi?id=2053222): Fix pull-through for images that have dots in their namespace [#309](https://github.com/openshift/image-registry/pull/309) * [Bug 2042677](https://bugzilla.redhat.com/show_bug.cgi?id=2042677): Fix auth for docker.io images [#305](https://github.com/openshift/image-registry/pull/305) * [Bug 2029987](https://bugzilla.redhat.com/show_bug.cgi?id=2029987): Try another registry if blob is not found [#303](https://github.com/openshift/image-registry/pull/303) * [Full changelog](https://github.com/openshift/image-registry/compare/50d54ae38c2618501ec2c5e0897731d1a916db10...ae662c8dc3fd8ddbd3e076330044526cf120f817) ### [driver-toolkit](https://github.com/openshift/driver-toolkit/tree/51a2f1efedf655d2454efba18c68262532792b14) * [Bug 2031854](https://bugzilla.redhat.com/show_bug.cgi?id=2031854): Add e2e test to 4.9 branch [#71](https://github.com/openshift/driver-toolkit/pull/71) * [Full changelog](https://github.com/openshift/driver-toolkit/compare/25c351345f6e06130dfd97d79fc417f9bbc7ebbe...51a2f1efedf655d2454efba18c68262532792b14) ### [etcd](https://github.com/openshift/etcd/tree/784bbed573125ffd4c0eeb12def0c2ddc944bb51) * [OCPBUGS-6516](https://issues.redhat.com/browse/OCPBUGS-6516): UPSTREAM:<carry>: etcdserver: process the scenaro of the last WAL rec… [#180](https://github.com/openshift/etcd/pull/180) * [OCPBUGS-3104](https://issues.redhat.com/browse/OCPBUGS-3104): Rebase openshift/etcd 4.9 onto v3.5.6 [#172](https://github.com/openshift/etcd/pull/172) * [OCPBUGS-2143](https://issues.redhat.com/browse/OCPBUGS-2143): Rebase openshift/etcd 4.9 onto 3.5.5 [#157](https://github.com/openshift/etcd/pull/157) * Update OWNERS [#124](https://github.com/openshift/etcd/pull/124) * [Bug 2077501](https://bugzilla.redhat.com/show_bug.cgi?id=2077501): Merge Upstream etcd 3.5.3 into Openshift 4.9 [#119](https://github.com/openshift/etcd/pull/119) * [Bug 2016174](https://bugzilla.redhat.com/show_bug.cgi?id=2016174): UPSTREAM: <carry>: server: Fix for v3.5 Ensure that cluster members stored in v2store and backend are in sync [#99](https://github.com/openshift/etcd/pull/99) * [Full changelog](https://github.com/openshift/etcd/compare/5c1feaf09d5f9cf036b931f0349d4e892883898e...784bbed573125ffd4c0eeb12def0c2ddc944bb51) ### [gcp-machine-controllers](https://github.com/openshift/cluster-api-provider-gcp/tree/c955c03b2d05e3b8eb0d39d5b4927128e6d1c6c6) * Updating ose-gcp-machine-controllers images to be consistent with ART [#166](https://github.com/openshift/cluster-api-provider-gcp/pull/166) * [Full changelog](https://github.com/openshift/cluster-api-provider-gcp/compare/d92b08844a2b0ae31e3a78a5548baab7c9d39478...c955c03b2d05e3b8eb0d39d5b4927128e6d1c6c6) ### [gcp-pd-csi-driver-operator](https://github.com/openshift/gcp-pd-csi-driver-operator/tree/d8a891de5ae9cf552d7d012ebe61c2abd395386e) * [Bug 2038191](https://bugzilla.redhat.com/show_bug.cgi?id=2038191): Add custom CA bundle support [#42](https://github.com/openshift/gcp-pd-csi-driver-operator/pull/42) * [Full changelog](https://github.com/openshift/gcp-pd-csi-driver-operator/compare/b1a29eace7c208d7c4a839fd2b23d749cff94a42...d8a891de5ae9cf552d7d012ebe61c2abd395386e) ### [grafana](https://github.com/openshift/grafana/tree/06135eb08272439e8d84be42f8ba1668a0eaaebc) * [OCPBUGS-4259](https://issues.redhat.com/browse/OCPBUGS-4259): bump github.com/crewjam/saml dependency [#94](https://github.com/openshift/grafana/pull/94) * [OCPBUGS-641](https://issues.redhat.com/browse/OCPBUGS-641): bump Grafana to 7.5.11 [#88](https://github.com/openshift/grafana/pull/88) * [Full changelog](https://github.com/openshift/grafana/compare/6130ba8b4c4b66e7779bec26c74b1fefbb2e21ab...06135eb08272439e8d84be42f8ba1668a0eaaebc) ### [haproxy-router](https://github.com/openshift/router/tree/fa49027c596d30f542ab1fd29315e9405853b0af) * [OCPBUGS-1620](https://issues.redhat.com/browse/OCPBUGS-1620): Fix gap in router's handling of graceful shutdowns. [#418](https://github.com/openshift/router/pull/418) * [OCPBUGS-1338](https://issues.redhat.com/browse/OCPBUGS-1338): HAProxy: enable PROXY protocol for all listeners [#416](https://github.com/openshift/router/pull/416) * [Bug 2010227](https://bugzilla.redhat.com/show_bug.cgi?id=2010227): HTTPS redirect happens even if there is a more specific http-only route [#367](https://github.com/openshift/router/pull/367) * [Full changelog](https://github.com/openshift/router/compare/2d1e1f4bd413dd283c92638e23fae940ef4c1e54...fa49027c596d30f542ab1fd29315e9405853b0af) ### [hyperkube, pod](https://github.com/openshift/kubernetes/tree/39688a260ac20ffcb821f4d329741b70143d5228) * [OCPBUGS-10330](https://issues.redhat.com/browse/OCPBUGS-10330): Fix mounted volume expansion tests [#1512](https://github.com/openshift/kubernetes/pull/1512) * [OCPBUGS-3472](https://issues.redhat.com/browse/OCPBUGS-3472): UPSTREAM: 113517: kubelet: fix pod log line corruption when using timestamps and long lines [#1417](https://github.com/openshift/kubernetes/pull/1417) * [Bug 2101345](https://bugzilla.redhat.com/show_bug.cgi?id=2101345): bump to k8s 1.22.15 [#1383](https://github.com/openshift/kubernetes/pull/1383) * [Bug 2106655](https://bugzilla.redhat.com/show_bug.cgi?id=2106655): UPSTREAM: 109103: cpu/memory manager containerMap memory leak [#1325](https://github.com/openshift/kubernetes/pull/1325) * [Bug 2083554](https://bugzilla.redhat.com/show_bug.cgi?id=2083554): UPSTREAM: 109933: fix: exclude non-ready nodes and deleted nodes from azure load balancers [#1256](https://github.com/openshift/kubernetes/pull/1256) * [Bug 2105663](https://bugzilla.redhat.com/show_bug.cgi?id=2105663): UPSTREAM: <carry>: update list of deprecated apis [#1316](https://github.com/openshift/kubernetes/pull/1316) * [release 4.9] Bug Bug 2106962: UPSTREAM: <carry>: use correct base image for testing [#1321](https://github.com/openshift/kubernetes/pull/1321) * [Bug 2075704](https://bugzilla.redhat.com/show_bug.cgi?id=2075704): Backport 107821 and 107831 [#1267](https://github.com/openshift/kubernetes/pull/1267) * [Bug 2075704](https://bugzilla.redhat.com/show_bug.cgi?id=2075704): Revert Backport 107821 and 107831 [#1266](https://github.com/openshift/kubernetes/pull/1266) * [Bug 2075704](https://bugzilla.redhat.com/show_bug.cgi?id=2075704): Backport 107821 and 107831 [#1242](https://github.com/openshift/kubernetes/pull/1242) * [Bug 2069310](https://bugzilla.redhat.com/show_bug.cgi?id=2069310): UPSTREAM: <carry>: use hardcoded rest mapper from library-go [#1233](https://github.com/openshift/kubernetes/pull/1233) * [Bug 2066390](https://bugzilla.redhat.com/show_bug.cgi?id=2066390): Rebase 1.22.8 [#1223](https://github.com/openshift/kubernetes/pull/1223) * [Bug 2050632](https://bugzilla.redhat.com/show_bug.cgi?id=2050632): UPSTREAM: <drop>: Give warning when ipFamilyPolicy implicitly set [#1170](https://github.com/openshift/kubernetes/pull/1170) * [Bug 2073153](https://bugzilla.redhat.com/show_bug.cgi?id=2073153): golang toolchain unsupported parsers tag [#1239](https://github.com/openshift/kubernetes/pull/1239) * [Bug 2065786](https://bugzilla.redhat.com/show_bug.cgi?id=2065786): Backport 108366 OutofCpu Fixes [#1222](https://github.com/openshift/kubernetes/pull/1222) * [Bug 2024643](https://bugzilla.redhat.com/show_bug.cgi?id=2024643): Rebase v1.22.5 [#1103](https://github.com/openshift/kubernetes/pull/1103) * [Bug 2043807](https://bugzilla.redhat.com/show_bug.cgi?id=2043807): UPSTREAM 107564: kube-apiserver integration test: allow IPs with leading zeros on the API [#1134](https://github.com/openshift/kubernetes/pull/1134) * [Bug 2043807](https://bugzilla.redhat.com/show_bug.cgi?id=2043807): add deprecated parser build flag [#1166](https://github.com/openshift/kubernetes/pull/1166) * [Bug 2045972](https://bugzilla.redhat.com/show_bug.cgi?id=2045972): UPSTREAM: <carry>: set correctly static pods CPUs when workload partitioning is disabled [#1144](https://github.com/openshift/kubernetes/pull/1144) * [Bug 2039373](https://bugzilla.redhat.com/show_bug.cgi?id=2039373): UPSTREAM: 89885: SQUASH: Retry fetching clouds.conf [#1107](https://github.com/openshift/kubernetes/pull/1107) * [Bug 2044438](https://bugzilla.redhat.com/show_bug.cgi?id=2044438): UPSTREAM: 107637: backport inotify fix to 4.9 [#1138](https://github.com/openshift/kubernetes/pull/1138) * [Bug 2040338](https://bugzilla.redhat.com/show_bug.cgi?id=2040338): UPSTREAM: <carry>: remove egressnetworkpolicies from gc ignored resources [#1125](https://github.com/openshift/kubernetes/pull/1125) * [Bug 2030697](https://bugzilla.redhat.com/show_bug.cgi?id=2030697): UPSTREAM: <carry>: api request counts for current hour are incorrect [#1088](https://github.com/openshift/kubernetes/pull/1088) * [Bug 2023452](https://bugzilla.redhat.com/show_bug.cgi?id=2023452): UPSTREAM: 106382: defer close the rotated log open [#1057](https://github.com/openshift/kubernetes/pull/1057) * [Bug 2024967](https://bugzilla.redhat.com/show_bug.cgi?id=2024967): Fix subpath unmount error [#1066](https://github.com/openshift/kubernetes/pull/1066) * [Bug 2021995](https://bugzilla.redhat.com/show_bug.cgi?id=2021995): Read k8s version from hyperkube Dockerfile [#1044](https://github.com/openshift/kubernetes/pull/1044) * [Bug 2022740](https://bugzilla.redhat.com/show_bug.cgi?id=2022740): UPSTREAM: 106259: Don't guess SELinux support on error [#1053](https://github.com/openshift/kubernetes/pull/1053) * [Bug 2022281](https://bugzilla.redhat.com/show_bug.cgi?id=2022281): Rebase v1.22.3 [#1048](https://github.com/openshift/kubernetes/pull/1048) * [Bug 2023866](https://bugzilla.redhat.com/show_bug.cgi?id=2023866): Fix patch 104847 [#1061](https://github.com/openshift/kubernetes/pull/1061) * [Bug 2018442](https://bugzilla.redhat.com/show_bug.cgi?id=2018442): Image policy should mutate DeploymentConfigs, StatefulSets, and new CronJobs [#1033](https://github.com/openshift/kubernetes/pull/1033) * [Bug 2008827](https://bugzilla.redhat.com/show_bug.cgi?id=2008827): Rebase v1.22.2 [#985](https://github.com/openshift/kubernetes/pull/985) * [Bug 2018516](https://bugzilla.redhat.com/show_bug.cgi?id=2018516): 4.9: bump(github.com/openshift/*): make go.{mod,sum} point to 1.22.1 [#1030](https://github.com/openshift/kubernetes/pull/1030) * [Bug 2006717](https://bugzilla.redhat.com/show_bug.cgi?id=2006717): etcd-client starts retrying transient errors from the etcd cluster [#974](https://github.com/openshift/kubernetes/pull/974) * [Full changelog](https://github.com/openshift/kubernetes/compare/ef241fded394346e93100d5c1be9bc41e6ed6fcf...39688a260ac20ffcb821f4d329741b70143d5228) ### [insights-operator](https://github.com/openshift/insights-operator/tree/11bb71809e26534fe665463e6158bab34a494971) * OCPBUGS-443 Gather status of the cephclusters.ceph.rook.io resources (#659) (#665) [#659](https://github.com/openshift/insights-operator/pull/659) * [Bug 2083467](https://bugzilla.redhat.com/show_bug.cgi?id=2083467): Fix the clusteroperator conditions values when IO is degraded (#623) [#623](https://github.com/openshift/insights-operator/pull/623) * [Bug 2076903](https://bugzilla.redhat.com/show_bug.cgi?id=2076903): Gather namespace names with overlapping UIDs (#605) (#611) [#605](https://github.com/openshift/insights-operator/pull/605) * [Bug 2066825](https://bugzilla.redhat.com/show_bug.cgi?id=2066825): Gather some error messages from the kube-controller-manager containers (#598) (#599) [#598](https://github.com/openshift/insights-operator/pull/598) * [Bug 2033540](https://bugzilla.redhat.com/show_bug.cgi?id=2033540): Gather all CostManagementMericsConfig definitions. (#525) (#568) [#525](https://github.com/openshift/insights-operator/pull/525) * [Bug 2027637](https://bugzilla.redhat.com/show_bug.cgi?id=2027637): gather webhook configurations (#508) (#559) [#508](https://github.com/openshift/insights-operator/pull/508) * [Bug 2026644](https://bugzilla.redhat.com/show_bug.cgi?id=2026644): Gather all the container logs from relate namespaces of degraded clusteroperator (#553) [#553](https://github.com/openshift/insights-operator/pull/553) * [Bug 2017773](https://bugzilla.redhat.com/show_bug.cgi?id=2017773): Anonymize identity provider attributes in the (#520) (#527) [#520](https://github.com/openshift/insights-operator/pull/520) * [Bug 2017759](https://bugzilla.redhat.com/show_bug.cgi?id=2017759): Anonymize the ImageRegistry storage information also in (#507) (#526) [#507](https://github.com/openshift/insights-operator/pull/507) * [Bug 2005338](https://bugzilla.redhat.com/show_bug.cgi?id=2005338): OCM controller - change type of the secret (#500) (#506) [#500](https://github.com/openshift/insights-operator/pull/500) * [Bug 2001823](https://bugzilla.redhat.com/show_bug.cgi?id=2001823): Fix the error logic in the OCM controller & degrade only in HTTP error (#494) (#503) [#494](https://github.com/openshift/insights-operator/pull/494) * [Bug 2003893](https://bugzilla.redhat.com/show_bug.cgi?id=2003893): ApiRequestCount conditional gathering (#492) (#496) [#492](https://github.com/openshift/insights-operator/pull/492) * obfuscation ovn clusters bug (#522) [#522](https://github.com/openshift/insights-operator/pull/522) * [Full changelog](https://github.com/openshift/insights-operator/compare/51e4523defb54635bc2334e8ee682a41aee9e7a0...11bb71809e26534fe665463e6158bab34a494971) ### [ironic](https://github.com/openshift/ironic-image/tree/8e978cd415c3457f9b84c06b4cd1a27adc9d9402) * Bug OCPBUGS-1246: Improve resiliency of eTag handling [#317](https://github.com/openshift/ironic-image/pull/317) * [OCP 4.9] Update OWNERS [#278](https://github.com/openshift/ironic-image/pull/278) * [Bug 2088319](https://bugzilla.redhat.com/show_bug.cgi?id=2088319): Backport weak eTag handling fix to OpenShift 4.9 [#277](https://github.com/openshift/ironic-image/pull/277) * [Bug 2082103](https://bugzilla.redhat.com/show_bug.cgi?id=2082103): Enable vMedia provisioning of Nokia servers [#274](https://github.com/openshift/ironic-image/pull/274) * [Bug 2023748](https://bugzilla.redhat.com/show_bug.cgi?id=2023748): Compare IPs using the short form of IPv6 address [#232](https://github.com/openshift/ironic-image/pull/232) * [Bug 2025754](https://bugzilla.redhat.com/show_bug.cgi?id=2025754): Enable vMedia provisioning of SuperMicro X11/X12 [#238](https://github.com/openshift/ironic-image/pull/238) * [Bug 2017412](https://bugzilla.redhat.com/show_bug.cgi?id=2017412): [4.9] fix Image provisioning fails with file name too long [#228](https://github.com/openshift/ironic-image/pull/228) * [Bug 2012798](https://bugzilla.redhat.com/show_bug.cgi?id=2012798): Ironic resumes clean before raid configuration job is actually completed [#221](https://github.com/openshift/ironic-image/pull/221) * [Full changelog](https://github.com/openshift/ironic-image/compare/ab287f6e040efecff3c02fd34f77064b402458a7...8e978cd415c3457f9b84c06b4cd1a27adc9d9402) ### [ironic-ipa-downloader](https://github.com/openshift/ironic-ipa-downloader/tree/0c913eeec8be493749fa2d5b17b7f6e6da241d67) * [Bug 2100786](https://bugzilla.redhat.com/show_bug.cgi?id=2100786): Include Fix discovering WWN/serial for devicemapper devices [#93](https://github.com/openshift/ironic-ipa-downloader/pull/93) * [Bug 2089313](https://bugzilla.redhat.com/show_bug.cgi?id=2089313): Multipath fix for passive paths [#92](https://github.com/openshift/ironic-ipa-downloader/pull/92) * [OCP 4.9] Update OWNERS [#89](https://github.com/openshift/ironic-ipa-downloader/pull/89) * [Full changelog](https://github.com/openshift/ironic-ipa-downloader/compare/6e9af39e14d7f531a5c0f0b025bc31c4c4392732...0c913eeec8be493749fa2d5b17b7f6e6da241d67) ### [ironic-machine-os-downloader](https://github.com/openshift/ironic-rhcos-downloader/tree/90b57223200ffcf5ad31b41700815779fc81afac) * [Bug 2020546](https://bugzilla.redhat.com/show_bug.cgi?id=2020546): Clear proxy env variables if go would have [#68](https://github.com/openshift/ironic-rhcos-downloader/pull/68) * [Full changelog](https://github.com/openshift/ironic-rhcos-downloader/compare/a367c213dd385b35ebaada46d788616706f3db56...90b57223200ffcf5ad31b41700815779fc81afac) ### [jenkins, jenkins-agent-base, jenkins-agent-maven, jenkins-agent-nodejs](https://github.com/openshift/jenkins/tree/7dfe142d4b83969c900cfa946ae163f152e09270) * [OCPBUGS-7053](https://issues.redhat.com/browse/OCPBUGS-7053): Sync jenkins version and plugins with mas… [#1583](https://github.com/openshift/jenkins/pull/1583) * [OCPBUGS-4111](https://issues.redhat.com/browse/OCPBUGS-4111): Various CVEs September/2022 [#1544](https://github.com/openshift/jenkins/pull/1544) * [OCPBUGS-6881](https://issues.redhat.com/browse/OCPBUGS-6881): Handle routes properly in s2i/run [#1566](https://github.com/openshift/jenkins/pull/1566) * [OCPBUGS-6711](https://issues.redhat.com/browse/OCPBUGS-6711): Force git server to an earlier version [#1564](https://github.com/openshift/jenkins/pull/1564) * [release: 4.9] OCPBUGS-6495: Sync javax-mail-api with version required by jenkins 2.361.1 [#1556](https://github.com/openshift/jenkins/pull/1556) * [OCPBUGS-911](https://issues.redhat.com/browse/OCPBUGS-911): Add maven plugin in base plugins [#1539](https://github.com/openshift/jenkins/pull/1539) * [OCPBUGS-3698](https://issues.redhat.com/browse/OCPBUGS-3698): [release-4.9] Update OWNERS [#1520](https://github.com/openshift/jenkins/pull/1520) * [OCPBUGS-3627](https://issues.redhat.com/browse/OCPBUGS-3627): Bump jenkins version to 2.361.1 [#1515](https://github.com/openshift/jenkins/pull/1515) * [OCPBUGS-3173](https://issues.redhat.com/browse/OCPBUGS-3173): Add glibc-langpack-en package in agent-base image [#1512](https://github.com/openshift/jenkins/pull/1512) * [OCPBUGS-474](https://issues.redhat.com/browse/OCPBUGS-474): CVE Mitigations [#1481](https://github.com/openshift/jenkins/pull/1481) * [OCPBUGS-1757](https://issues.redhat.com/browse/OCPBUGS-1757): Install glibc language package to remove `setLocale` warning [#1488](https://github.com/openshift/jenkins/pull/1488) * [OCPBUGS-1811](https://issues.redhat.com/browse/OCPBUGS-1811): update install plugins script [#1489](https://github.com/openshift/jenkins/pull/1489) * [Bug 2076256](https://bugzilla.redhat.com/show_bug.cgi?id=2076256): Mitigate multiple CVEs [#1432](https://github.com/openshift/jenkins/pull/1432) * [Bug 2077289](https://bugzilla.redhat.com/show_bug.cgi?id=2077289): set necessary JVM args to allow jenkins JVM to come up on a FIPS node [#1433](https://github.com/openshift/jenkins/pull/1433) * [Bug 2069498](https://bugzilla.redhat.com/show_bug.cgi?id=2069498): [release-4.9] update bundle plugins [#1422](https://github.com/openshift/jenkins/pull/1422) * [Bug 2067128](https://bugzilla.redhat.com/show_bug.cgi?id=2067128): [release-4.9] compute bundle plugins in build [#1413](https://github.com/openshift/jenkins/pull/1413) * [Bug 2058751](https://bugzilla.redhat.com/show_bug.cgi?id=2058751): [release-4.9] 2022-02-15 Security Advisory [#1406](https://github.com/openshift/jenkins/pull/1406) * [Bug 2052063](https://bugzilla.redhat.com/show_bug.cgi?id=2052063): bump openshift-sync to 1.0.53 [#1385](https://github.com/openshift/jenkins/pull/1385) * [Bug 2044941](https://bugzilla.redhat.com/show_bug.cgi?id=2044941): Jenkins Fixes for CVE-2022-20617 and CVE-2022-20612 [#1369](https://github.com/openshift/jenkins/pull/1369) * [Bug 2038961](https://bugzilla.redhat.com/show_bug.cgi?id=2038961): bump sync plugin to 1.0.52 [#1363](https://github.com/openshift/jenkins/pull/1363) * [Bug 2037346](https://bugzilla.redhat.com/show_bug.cgi?id=2037346): Update openshift-sync-plugin to 1.0.51 and various dependant plugins [#1359](https://github.com/openshift/jenkins/pull/1359) * [Bug 2020615](https://bugzilla.redhat.com/show_bug.cgi?id=2020615): Update Jenkins and plugins per 2021-11 advisory [#1346](https://github.com/openshift/jenkins/pull/1346) * [Full changelog](https://github.com/openshift/jenkins/compare/aa28a4bee155430bf547e721c97f91872570edeb...7dfe142d4b83969c900cfa946ae163f152e09270) ### [k8s-prometheus-adapter](https://github.com/openshift/k8s-prometheus-adapter/tree/bfb3922a80fe45c0fe7d5b1d26a2dfb2fc67f981) * Updating ose-prometheus-adapter images to be consistent with ART [#50](https://github.com/openshift/k8s-prometheus-adapter/pull/50) * [Full changelog](https://github.com/openshift/k8s-prometheus-adapter/compare/adfdd41d3fba23d38645c1c655687c28e27979df...bfb3922a80fe45c0fe7d5b1d26a2dfb2fc67f981) ### [keepalived-ipfailover](https://github.com/openshift/images/tree/b379643834763e8e9cf94ec97cdfd0f922f1568b) * Updating ose-egress-http-proxy images to be consistent with ART [#91](https://github.com/openshift/images/pull/91) * Updating openshift-enterprise-keepalived-ipfailover images to be consistent with ART [#93](https://github.com/openshift/images/pull/93) * [Full changelog](https://github.com/openshift/images/compare/f93eca83376b6aaf681755c568b6e0393f569c04...b379643834763e8e9cf94ec97cdfd0f922f1568b) ### [kube-proxy, sdn](https://github.com/openshift/sdn/tree/006ee16e1a9c8fc87a6c5498804ddbe8f3689a71) * [OCPBUGS-2204](https://issues.redhat.com/browse/OCPBUGS-2204): Fix DNS endpoint hack to prefer local instead of forcing it [#468](https://github.com/openshift/sdn/pull/468) * [Bug 2093978](https://bugzilla.redhat.com/show_bug.cgi?id=2093978): Remove node-tainting for too-small MTU [#436](https://github.com/openshift/sdn/pull/436) * [Bug 2090624](https://bugzilla.redhat.com/show_bug.cgi?id=2090624): Masquerade in cluster traffic that is marked for egress IP [#433](https://github.com/openshift/sdn/pull/433) * [Bug 2063970](https://bugzilla.redhat.com/show_bug.cgi?id=2063970): delete stale UDP conntrack entries for loadbalancer IPs [#413](https://github.com/openshift/sdn/pull/413) * [Bug 2026302](https://bugzilla.redhat.com/show_bug.cgi?id=2026302): [EgressIP] move `ct(commit)` action from OVS group to flow [#375](https://github.com/openshift/sdn/pull/375) * [Bug 2006290](https://bugzilla.redhat.com/show_bug.cgi?id=2006290): Fix up event recorder usage (again) [#357](https://github.com/openshift/sdn/pull/357) * [Full changelog](https://github.com/openshift/sdn/compare/f3882d62c20ffb636f89d32189f803288432671c...006ee16e1a9c8fc87a6c5498804ddbe8f3689a71) ### [kube-storage-version-migrator](https://github.com/openshift/kubernetes-kube-storage-version-migrator/tree/a2143bc29bd499c479ae67a1e446466338a4f9e9) * Updating ose-kube-storage-version-migrator images to be consistent with ART [#179](https://github.com/openshift/kubernetes-kube-storage-version-migrator/pull/179) * [Full changelog](https://github.com/openshift/kubernetes-kube-storage-version-migrator/compare/901a6d221d1cf79b4b6ba859bb43521e0ee635b3...a2143bc29bd499c479ae67a1e446466338a4f9e9) ### [kuryr-cni, kuryr-controller](https://github.com/openshift/kuryr-kubernetes/tree/1e8c94f80e26b69968a3d8ea918a387451e9db2b) * [Bug 2022684](https://bugzilla.redhat.com/show_bug.cgi?id=2022684): Improve retrieval of Trunks info [#599](https://github.com/openshift/kuryr-kubernetes/pull/599) * [Bug 2023383](https://bugzilla.redhat.com/show_bug.cgi?id=2023383): Do not start kuryr-daemon when worker_num <= 1 [#602](https://github.com/openshift/kuryr-kubernetes/pull/602) * [Bug 2018129](https://bugzilla.redhat.com/show_bug.cgi?id=2018129): Ensure KLB is updated [#585](https://github.com/openshift/kuryr-kubernetes/pull/585) * [Bug 2023731](https://bugzilla.redhat.com/show_bug.cgi?id=2023731): Ensure DOWN subports are cleaned up [#604](https://github.com/openshift/kuryr-kubernetes/pull/604) * [Bug 2018148](https://bugzilla.redhat.com/show_bug.cgi?id=2018148): Update TOX_CONSTRAINTS_FILE for stable/xena [#586](https://github.com/openshift/kuryr-kubernetes/pull/586) * [Bug 2013017](https://bugzilla.redhat.com/show_bug.cgi?id=2013017): Include port fix [#578](https://github.com/openshift/kuryr-kubernetes/pull/578) * [Full changelog](https://github.com/openshift/kuryr-kubernetes/compare/e66f2119bbbe0c7a57cc95491a7433489dad1dcb...1e8c94f80e26b69968a3d8ea918a387451e9db2b) ### [machine-api-operator](https://github.com/openshift/machine-api-operator/tree/42b70cbdd93860602e50ac1690bc8c6168063242) * [Bug 2111004](https://bugzilla.redhat.com/show_bug.cgi?id=2111004): Add DescribeRegions permission for aws controller [#1048](https://github.com/openshift/machine-api-operator/pull/1048) * [Bug 2025697](https://bugzilla.redhat.com/show_bug.cgi?id=2025697): [release-4.9]: Bump CAPZ API [#965](https://github.com/openshift/machine-api-operator/pull/965) * [Bug 2022813](https://bugzilla.redhat.com/show_bug.cgi?id=2022813): GCP credentials reporting networksecurity.googleapis.com API disabled [#952](https://github.com/openshift/machine-api-operator/pull/952) * [Full changelog](https://github.com/openshift/machine-api-operator/compare/f85d027a509f5cf351fe3f9b5b0a9f2e33a951c5...42b70cbdd93860602e50ac1690bc8c6168063242) ### [machine-config-operator](https://github.com/openshift/machine-config-operator/tree/30fd1e38ea3920dc1df470ba3476fd8f6213d4f1) * [OCPBUGS-4051](https://issues.redhat.com/browse/OCPBUGS-4051): Add ephemeral storage to kubelet system reserved args [#3429](https://github.com/openshift/machine-config-operator/pull/3429) * [OCPBUGS-3200](https://issues.redhat.com/browse/OCPBUGS-3200): configure-ovs: avoid using 'ip -j' unavailable in RHEL7 [#3407](https://github.com/openshift/machine-config-operator/pull/3407) * [OCPBUGS-2814](https://issues.redhat.com/browse/OCPBUGS-2814): Make sure there is a search domain in resolv.conf [#3385](https://github.com/openshift/machine-config-operator/pull/3385) * [Bug 2096792](https://bugzilla.redhat.com/show_bug.cgi?id=2096792): mcd pull service: use `cp` instead of `cat` to copy MCD on host [#3187](https://github.com/openshift/machine-config-operator/pull/3187) * [OCPBUGS-288](https://issues.redhat.com/browse/OCPBUGS-288): configure-ovs: clone inactive autoconnect slaves [#3296](https://github.com/openshift/machine-config-operator/pull/3296) * [OCPBUGS-420](https://issues.redhat.com/browse/OCPBUGS-420): Fix problem with retaining data in string array in piped while loop [#3300](https://github.com/openshift/machine-config-operator/pull/3300) * [Bug 2101794](https://bugzilla.redhat.com/show_bug.cgi?id=2101794): Avoid kubernetes node port range [#3255](https://github.com/openshift/machine-config-operator/pull/3255) * [Bug 2108538](https://bugzilla.redhat.com/show_bug.cgi?id=2108538): configure-ovs: improve handling of static ip and mac address configuration [#3254](https://github.com/openshift/machine-config-operator/pull/3254) * [Bug 2098099](https://bugzilla.redhat.com/show_bug.cgi?id=2098099): configure-ovs: clone connection to avoid selinux problems [#3188](https://github.com/openshift/machine-config-operator/pull/3188) * [Bug 2089763](https://bugzilla.redhat.com/show_bug.cgi?id=2089763): configure-ovs: persist profiles after auto-connect has been set [#3183](https://github.com/openshift/machine-config-operator/pull/3183) * [Bug 2089763](https://bugzilla.redhat.com/show_bug.cgi?id=2089763): configure-ovs: avoid restarting NetworkManager [#3160](https://github.com/openshift/machine-config-operator/pull/3160) * [Bug 2071689](https://bugzilla.redhat.com/show_bug.cgi?id=2071689): lib/resourcemerge: handle container env var deletions [#3057](https://github.com/openshift/machine-config-operator/pull/3057) * [Bug 2081123](https://bugzilla.redhat.com/show_bug.cgi?id=2081123): Add KUBELET_NODEIP_HINT to nodeip-configuration [#3130](https://github.com/openshift/machine-config-operator/pull/3130) * [Bug 2070490](https://bugzilla.redhat.com/show_bug.cgi?id=2070490): configure-ovs: reload NM only when necessary [#3048](https://github.com/openshift/machine-config-operator/pull/3048) * [Bug 2074491](https://bugzilla.redhat.com/show_bug.cgi?id=2074491): configure-ovs: move dhcp config from br-ex to ovs-if-br-ex [#3077](https://github.com/openshift/machine-config-operator/pull/3077) * [Bug 2062310](https://bugzilla.redhat.com/show_bug.cgi?id=2062310): Add --templates flag to MCC bootstrap command [#2998](https://github.com/openshift/machine-config-operator/pull/2998) * [Bug 2063327](https://bugzilla.redhat.com/show_bug.cgi?id=2063327): [release-4.9] Ensure directories are created with usable permission bits [#3013](https://github.com/openshift/machine-config-operator/pull/3013) * [Bug 2038249](https://bugzilla.redhat.com/show_bug.cgi?id=2038249): Improvements for configure-ovs script [#2901](https://github.com/openshift/machine-config-operator/pull/2901) * [Bug 2025474](https://bugzilla.redhat.com/show_bug.cgi?id=2025474): annotate rendered config with OCP version [#2964](https://github.com/openshift/machine-config-operator/pull/2964) * [Bug 2058511](https://bugzilla.redhat.com/show_bug.cgi?id=2058511): Prepend to search domains instead of replacing [#2966](https://github.com/openshift/machine-config-operator/pull/2966) * [Bug 2050911](https://bugzilla.redhat.com/show_bug.cgi?id=2050911): tighten operator availability conditions [#2946](https://github.com/openshift/machine-config-operator/pull/2946) * [Bug 2032985](https://bugzilla.redhat.com/show_bug.cgi?id=2032985): fixes 1 to 1 containerruntime config mapping [#2876](https://github.com/openshift/machine-config-operator/pull/2876) * [Bug 2043650](https://bugzilla.redhat.com/show_bug.cgi?id=2043650): Avoid dynamically allocated port range for haproxy [#2923](https://github.com/openshift/machine-config-operator/pull/2923) * [Bug 2044503](https://bugzilla.redhat.com/show_bug.cgi?id=2044503): ovs-configuration: use lower than NM default ethernet route metric [#2928](https://github.com/openshift/machine-config-operator/pull/2928) * [Bug 2027926](https://bugzilla.redhat.com/show_bug.cgi?id=2027926): storage.conf: remove obsolete option override_kernel_check [#2848](https://github.com/openshift/machine-config-operator/pull/2848) * [Bug 2026275](https://bugzilla.redhat.com/show_bug.cgi?id=2026275): daemon: make cordon/uncordon more robust [#2839](https://github.com/openshift/machine-config-operator/pull/2839) * [Bug 2022641](https://bugzilla.redhat.com/show_bug.cgi?id=2022641): [release-4.9] Send WARN message to stderr [#2785](https://github.com/openshift/machine-config-operator/pull/2785) * [Bug 2008210](https://bugzilla.redhat.com/show_bug.cgi?id=2008210): configure-ovs: Persist addr-gen-mode for ipv6 connections [#2775](https://github.com/openshift/machine-config-operator/pull/2775) * [Bug 2013164](https://bugzilla.redhat.com/show_bug.cgi?id=2013164): [IPI ON-PREM] move Keepalived default ingress script to separate file [#2798](https://github.com/openshift/machine-config-operator/pull/2798) * [Bug 2009210](https://bugzilla.redhat.com/show_bug.cgi?id=2009210): [on-prem] Set coredns bufsize to 512 [#2784](https://github.com/openshift/machine-config-operator/pull/2784) * [Full changelog](https://github.com/openshift/machine-config-operator/compare/1be39964b45df10cbd2b9e99d0fe4b268bf9a42f...30fd1e38ea3920dc1df470ba3476fd8f6213d4f1) ### [multus-cni](https://github.com/openshift/multus-cni/tree/6588b6cf8f0b696b7c5d68570e4ec73cc6ed5956) * [OCPBUGS-2572](https://issues.redhat.com/browse/OCPBUGS-2572): Fix missing device-info in networks-status annotation for chained plugins [#138](https://github.com/openshift/multus-cni/pull/138) * [Bug 2017881](https://bugzilla.redhat.com/show_bug.cgi?id=2017881): add handling of pod UIDs passed from runtime [#111](https://github.com/openshift/multus-cni/pull/111) * [Full changelog](https://github.com/openshift/multus-cni/compare/5e081d5de3ba3bbb48d0904eabce050f636140e4...6588b6cf8f0b696b7c5d68570e4ec73cc6ed5956) ### [multus-route-override-cni](https://github.com/openshift/route-override-cni/tree/590bab361f0b888dce966f2a1898d5eb11fd4e03) * Updating ose-multus-route-override-cni images to be consistent with ART [#29](https://github.com/openshift/route-override-cni/pull/29) * Updating ose-multus-route-override-cni-alt images to be consistent with ART [#26](https://github.com/openshift/route-override-cni/pull/26) * Updating ose-multus-route-override-cni images to be consistent with ART [#23](https://github.com/openshift/route-override-cni/pull/23) * Updating ose-multus-route-override-cni-alt images to be consistent with ART [#18](https://github.com/openshift/route-override-cni/pull/18) * [Full changelog](https://github.com/openshift/route-override-cni/compare/707dd38046554810f601f2fae4a69bc4b907d7d3...590bab361f0b888dce966f2a1898d5eb11fd4e03) ### [multus-whereabouts-ipam-cni](https://github.com/openshift/whereabouts-cni/tree/ddda41c65fa75a64e19ae504c7e9d2a1faf4bab5) * [Bug 2064859](https://bugzilla.redhat.com/show_bug.cgi?id=2064859): Sync context improvements [backport 4.9] [#89](https://github.com/openshift/whereabouts-cni/pull/89) * [Bug 2028964](https://bugzilla.redhat.com/show_bug.cgi?id=2028964): Whereabouts should reconcile IP addresses [backport 4.9] [#77](https://github.com/openshift/whereabouts-cni/pull/77) * Updating ose-multus-whereabouts-ipam-cni images to be consistent with ART [#71](https://github.com/openshift/whereabouts-cni/pull/71) * [Bug 2009493](https://bugzilla.redhat.com/show_bug.cgi?id=2009493): Release on cancel 4.9 [#69](https://github.com/openshift/whereabouts-cni/pull/69) * [Full changelog](https://github.com/openshift/whereabouts-cni/compare/cc2dd8fba6f0aa3a667df5e9972749cfe5d5f0b9...ddda41c65fa75a64e19ae504c7e9d2a1faf4bab5) ### [must-gather](https://github.com/openshift/must-gather/tree/fd4db9a430debc212687369f07309d20e492bed7) * [OCPBUGS-7916](https://issues.redhat.com/browse/OCPBUGS-7916): Back-port #259 to release 4.9 [#351](https://github.com/openshift/must-gather/pull/351) * [OCPBUGS-5195](https://issues.redhat.com/browse/OCPBUGS-5195): fix audit gathering script [#344](https://github.com/openshift/must-gather/pull/344) * [OCPBUGS-2261](https://issues.redhat.com/browse/OCPBUGS-2261): [release-4.9] Collect rotated log files [#331](https://github.com/openshift/must-gather/pull/331) * [Bug 2108892](https://bugzilla.redhat.com/show_bug.cgi?id=2108892): Add timeout to oc cp command to fix must-gather delays when routers are terminating [#324](https://github.com/openshift/must-gather/pull/324) * [Bug 2092265](https://bugzilla.redhat.com/show_bug.cgi?id=2092265): Add networking resources [#308](https://github.com/openshift/must-gather/pull/308) * [Bug 2052929](https://bugzilla.redhat.com/show_bug.cgi?id=2052929): Fix ovn-nbctl commands for ipv6 [#284](https://github.com/openshift/must-gather/pull/284) * [Full changelog](https://github.com/openshift/must-gather/compare/d4b3f385ec4ee197057e18fb43fbb9a3e2b0e7f8...fd4db9a430debc212687369f07309d20e492bed7) ### [network-metrics-daemon](https://github.com/openshift/network-metrics-daemon/tree/4f9b895fa1b7d7802288e1733e21aa5d96fd26bf) * Added METRIC_TEST_IMAGE var (#56) [#56](https://github.com/openshift/network-metrics-daemon/pull/56) * Fix field selector (#51) [#51](https://github.com/openshift/network-metrics-daemon/pull/51) * [Full changelog](https://github.com/openshift/network-metrics-daemon/compare/9fd6103057d648a153cba0b8f06db92eff6d62f9...4f9b895fa1b7d7802288e1733e21aa5d96fd26bf) ### [oauth-apiserver](https://github.com/openshift/oauth-apiserver/tree/8b203f97716abbc416e4d5ca610d2f54d73cbfda) * [Bug 2043807](https://bugzilla.redhat.com/show_bug.cgi?id=2043807): add deprecated parser build flag [#72](https://github.com/openshift/oauth-apiserver/pull/72) * Updating ose-oauth-apiserver images to be consistent with ART [#56](https://github.com/openshift/oauth-apiserver/pull/56) * [Full changelog](https://github.com/openshift/oauth-apiserver/compare/6e0f92194d5a25728c826fefb2d99c5e88ebb5e5...8b203f97716abbc416e4d5ca610d2f54d73cbfda) ### [oauth-server](https://github.com/openshift/oauth-server/tree/1ee9925b84316939493a788a75ab16ddf1e301e0) * [Bug 2037274](https://bugzilla.redhat.com/show_bug.cgi?id=2037274): pkg/*: introduce x509_missing_san_total metric [#95](https://github.com/openshift/oauth-server/pull/95) * Updating oauth-server images to be consistent with ART [#85](https://github.com/openshift/oauth-server/pull/85) * [Full changelog](https://github.com/openshift/oauth-server/compare/a51e18174ac32f0e44dfa8946e812d25ff38a101...1ee9925b84316939493a788a75ab16ddf1e301e0) ### [openshift-apiserver](https://github.com/openshift/openshift-apiserver/tree/755eaf5cb117c9cd0901797a19f59abc840470c0) * Add coreydaley as reviewer/approver for pkg/build [#299](https://github.com/openshift/openshift-apiserver/pull/299) * [Bug 2053222](https://bugzilla.redhat.com/show_bug.cgi?id=2053222): Fix importing images that have dots in their namespace [#282](https://github.com/openshift/openshift-apiserver/pull/282) * [Bug 2043807](https://bugzilla.redhat.com/show_bug.cgi?id=2043807): add deprecated parser build flag [#277](https://github.com/openshift/openshift-apiserver/pull/277) * [Bug 2040240](https://bugzilla.redhat.com/show_bug.cgi?id=2040240): Make OriginImageMutators aware of origin objects [#269](https://github.com/openshift/openshift-apiserver/pull/269) * [Bug 2018442](https://bugzilla.redhat.com/show_bug.cgi?id=2018442): Image policy should mutate DeploymentConfigs [#255](https://github.com/openshift/openshift-apiserver/pull/255) * [Bug 2006791](https://bugzilla.redhat.com/show_bug.cgi?id=2006791): prevent high frequency logging for aborting build generation from image change trigger based build requests using the deprecated build config spec last image change trigger ID field [#247](https://github.com/openshift/openshift-apiserver/pull/247) * [Full changelog](https://github.com/openshift/openshift-apiserver/compare/272f9950c3609d189b69588e13a028911d0cd0c8...755eaf5cb117c9cd0901797a19f59abc840470c0) ### [openshift-controller-manager](https://github.com/openshift/openshift-controller-manager/tree/79857a326b7f77c589c6fd1d428a72c0f8faeffc) * [Bug 2006791](https://bugzilla.redhat.com/show_bug.cgi?id=2006791): BC ICT still must check spec last triggered image ID in case BC was last processed when cluster was pre 4.8 [#203](https://github.com/openshift/openshift-controller-manager/pull/203) * [Full changelog](https://github.com/openshift/openshift-controller-manager/compare/eda2db6d29e44b3833c6436631b3bc378b93eb92...79857a326b7f77c589c6fd1d428a72c0f8faeffc) ### [openstack-cinder-csi-driver-operator](https://github.com/openshift/openstack-cinder-csi-driver-operator/tree/30b60caf098773ce81b520b761a2d47b35fc9800) * [Bug 2110255](https://bugzilla.redhat.com/show_bug.cgi?id=2110255): SWEET32: Improve TLS configuration for Kube RBAC Proxy [#91](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/91) * [Bug 2037080](https://bugzilla.redhat.com/show_bug.cgi?id=2037080): relax health probes against Cinder API [#64](https://github.com/openshift/openstack-cinder-csi-driver-operator/pull/64) * [Full changelog](https://github.com/openshift/openstack-cinder-csi-driver-operator/compare/6f3466826a02e6a35aa33ff906f01497505f512d...30b60caf098773ce81b520b761a2d47b35fc9800) ### [openstack-machine-controllers](https://github.com/openshift/cluster-api-provider-openstack/tree/277eeabaa6a0fe750c6ae4acba15b637724cfc51) * [Bug 2077381](https://bugzilla.redhat.com/show_bug.cgi?id=2077381): Fix InstanceCreate port & trunk cleanup [#234](https://github.com/openshift/cluster-api-provider-openstack/pull/234) * [Bug 2064633](https://bugzilla.redhat.com/show_bug.cgi?id=2064633): Ensure subnets belong to the queried network [#222](https://github.com/openshift/cluster-api-provider-openstack/pull/222) * [Full changelog](https://github.com/openshift/cluster-api-provider-openstack/compare/a7442bb18bce01a0eb0ffe99d550aa7ba584ea25...277eeabaa6a0fe750c6ae4acba15b637724cfc51) ### [operator-lifecycle-manager, operator-registry](https://github.com/openshift/operator-framework-olm/tree/0f35d66475619b58edc56ccda3dfd655a45e0a16) * [OCPBUGS-5938](https://issues.redhat.com/browse/OCPBUGS-5938): backport cert rotation fix [#430](https://github.com/openshift/operator-framework-olm/pull/430) * [OCPBUGS-4948](https://issues.redhat.com/browse/OCPBUGS-4948): Fix label key truncation for subscription annotations (#2731) [#423](https://github.com/openshift/operator-framework-olm/pull/423) * [OCPBUGS-570](https://issues.redhat.com/browse/OCPBUGS-570): [release-4.9] remove broken thread-safety (#2697) [#372](https://github.com/openshift/operator-framework-olm/pull/372) * [OCPBUGS-459](https://issues.redhat.com/browse/OCPBUGS-459): fix(grpc): Add startupProbe to check for grpc health readiness (#2791) [#371](https://github.com/openshift/operator-framework-olm/pull/371) * [Bug 2102559](https://bugzilla.redhat.com/show_bug.cgi?id=2102559): opm bug fix [#328](https://github.com/openshift/operator-framework-olm/pull/328) * [Bug 2079082](https://bugzilla.redhat.com/show_bug.cgi?id=2079082): Replace collect-profile jobs that haven't completed [#293](https://github.com/openshift/operator-framework-olm/pull/293) * [Bug 2073967](https://bugzilla.redhat.com/show_bug.cgi?id=2073967): Fix a bug in deletion of webhook service for replacement [#284](https://github.com/openshift/operator-framework-olm/pull/284) * [Bug 2072995](https://bugzilla.redhat.com/show_bug.cgi?id=2072995): Emit CSV metric on startup [#280](https://github.com/openshift/operator-framework-olm/pull/280) * [Bug 2054848](https://bugzilla.redhat.com/show_bug.cgi?id=2054848): Do not modify object from the lister cache (#2562) [#253](https://github.com/openshift/operator-framework-olm/pull/253) * [Bug 2048450](https://bugzilla.redhat.com/show_bug.cgi?id=2048450): Bump containerd to 1.4.11 [#252](https://github.com/openshift/operator-framework-olm/pull/252) * [Bug 2000379](https://bugzilla.redhat.com/show_bug.cgi?id=2000379): fix: ensure operator images are included in rendered bundles related images [#180](https://github.com/openshift/operator-framework-olm/pull/180) * [Bug 2024048](https://bugzilla.redhat.com/show_bug.cgi?id=2024048): Remove outdated subscription update logic to improve resolution delay [#215](https://github.com/openshift/operator-framework-olm/pull/215) * [Bug 2017434](https://bugzilla.redhat.com/show_bug.cgi?id=2017434): Use arguments to configure pprof-secret [#212](https://github.com/openshift/operator-framework-olm/pull/212) * [Bug 2015799](https://bugzilla.redhat.com/show_bug.cgi?id=2015799): Introduce GRPC_PROXY EnvVar Support (#2364) [#207](https://github.com/openshift/operator-framework-olm/pull/207) * [Full changelog](https://github.com/openshift/operator-framework-olm/compare/32eb2591437e394bdc58a58371c5cd1e6fe5e63f...0f35d66475619b58edc56ccda3dfd655a45e0a16) ### [operator-marketplace](https://github.com/operator-framework/operator-marketplace/tree/859472720018b297885fdd4d8f61ae3fcb1c42aa) * [Bug 2023550](https://bugzilla.redhat.com/show_bug.cgi?id=2023550): Revert "Start without defaults on ARM" [#431](https://github.com/operator-framework/operator-marketplace/pull/431) * [Full changelog](https://github.com/operator-framework/operator-marketplace/compare/cfc16ec90b08c2ac3ab7d9c1b41917ac9572709f...859472720018b297885fdd4d8f61ae3fcb1c42aa) ### [ovirt-csi-driver](https://github.com/openshift/ovirt-csi-driver/tree/fe2a7fdff88fda45076e73891f4b0c1a4395a54b) * [Bug 2014845](https://bugzilla.redhat.com/show_bug.cgi?id=2014845): Fix storage domain search string [#91](https://github.com/openshift/ovirt-csi-driver/pull/91) * [Full changelog](https://github.com/openshift/ovirt-csi-driver/compare/ec2da4fca6ba2de10540800b64688b12a111b735...fe2a7fdff88fda45076e73891f4b0c1a4395a54b) ### [ovirt-csi-driver-operator](https://github.com/openshift/ovirt-csi-driver-operator/tree/5ea2970a24ad07df8bc94f7aa7cbcb22a8f4e849) * [Bug 2024491](https://bugzilla.redhat.com/show_bug.cgi?id=2024491): Align manifest dir with storage operator [#78](https://github.com/openshift/ovirt-csi-driver-operator/pull/78) * [Bug 2056995](https://bugzilla.redhat.com/show_bug.cgi?id=2056995): Increase timeouts for CSI driver [#88](https://github.com/openshift/ovirt-csi-driver-operator/pull/88) * [Bug 2017245](https://bugzilla.redhat.com/show_bug.cgi?id=2017245): Rearrange static files to prevent creation errors [#74](https://github.com/openshift/ovirt-csi-driver-operator/pull/74) * [Full changelog](https://github.com/openshift/ovirt-csi-driver-operator/compare/7fe7f8e1bd4846c837b14fb79ab4840daf0f48ed...5ea2970a24ad07df8bc94f7aa7cbcb22a8f4e849) ### [ovirt-machine-controllers](https://github.com/openshift/cluster-api-provider-ovirt/tree/15a6add2ff5b1858f5d1bc3944a352dcf0ee010f) * [Bug 2028509](https://bugzilla.redhat.com/show_bug.cgi?id=2028509): detach non-bootable disks before removing the VM [#124](https://github.com/openshift/cluster-api-provider-ovirt/pull/124) * [Full changelog](https://github.com/openshift/cluster-api-provider-ovirt/compare/2262c7c6cece3a7989c9c586ad0fbf68885739f7...15a6add2ff5b1858f5d1bc3944a352dcf0ee010f) ### [ovn-kubernetes](https://github.com/openshift/ovn-kubernetes/tree/f1da3762a3c5da318ca7c2fcc405b25b28c5aa54) * [Bug 2115926](https://bugzilla.redhat.com/show_bug.cgi?id=2115926): Fix GetPodsBySelector/GetNamespacesBySelector so MatchExpressions is respected [#1235](https://github.com/openshift/ovn-kubernetes/pull/1235) * [OCPBUGS-811](https://issues.redhat.com/browse/OCPBUGS-811): [Release 4.9] correct creation and update of egressFirewall [#1261](https://github.com/openshift/ovn-kubernetes/pull/1261) * Bug OCPBUGS-574: EgressGW: don't error out trying to add SPK when a pod without ip exists [#1252](https://github.com/openshift/ovn-kubernetes/pull/1252) * [Bug 2090315](https://bugzilla.redhat.com/show_bug.cgi?id=2090315): Remove conntrack entries after rules [#1220](https://github.com/openshift/ovn-kubernetes/pull/1220) * [Bug 2115845](https://bugzilla.redhat.com/show_bug.cgi?id=2115845): [release-4.9] OCP CARRY: Add the rules to EXTERNALIPs only for SGW mode [#1233](https://github.com/openshift/ovn-kubernetes/pull/1233) * [Bug 2096802](https://bugzilla.redhat.com/show_bug.cgi?id=2096802): duplicated IPs can be assigned to multiple Pods [#1136](https://github.com/openshift/ovn-kubernetes/pull/1136) * [Bug 2105654](https://bugzilla.redhat.com/show_bug.cgi?id=2105654): egressIP: node retrieval failure is not respected, causes panic [#1186](https://github.com/openshift/ovn-kubernetes/pull/1186) * [Bug 2105266](https://bugzilla.redhat.com/show_bug.cgi?id=2105266): EGW: Clean Stale Conntrack Entries [#1192](https://github.com/openshift/ovn-kubernetes/pull/1192) * [Bug 2097157](https://bugzilla.redhat.com/show_bug.cgi?id=2097157): Bumps OVN to 21.12.0-58.el8fdp [#1140](https://github.com/openshift/ovn-kubernetes/pull/1140) * [Bug 2105277](https://bugzilla.redhat.com/show_bug.cgi?id=2105277): Fix panics in DestroyNetworkPolicy if policy is nil [#1183](https://github.com/openshift/ovn-kubernetes/pull/1183) * [Bug 2088630](https://bugzilla.redhat.com/show_bug.cgi?id=2088630): EgressIP NATs are not being cleared correctly from the logical router [#1103](https://github.com/openshift/ovn-kubernetes/pull/1103) * [Bug 2083239](https://bugzilla.redhat.com/show_bug.cgi?id=2083239): [Downstream-only][4.9-only] Always add complete efw ACL rules [#1088](https://github.com/openshift/ovn-kubernetes/pull/1088) * [Bug 2087226](https://bugzilla.redhat.com/show_bug.cgi?id=2087226): enable `exportloopref` linter and fix violations [#1096](https://github.com/openshift/ovn-kubernetes/pull/1096) * [Bug 2065782](https://bugzilla.redhat.com/show_bug.cgi?id=2065782): [release-4.9][backport] Fix cleaning VF representor ports [#1002](https://github.com/openshift/ovn-kubernetes/pull/1002) * [Bug 2077369](https://bugzilla.redhat.com/show_bug.cgi?id=2077369): [release-4.9] fix ipv6 network policy [#1046](https://github.com/openshift/ovn-kubernetes/pull/1046) * [Bug 2059700](https://bugzilla.redhat.com/show_bug.cgi?id=2059700): [4.9z] After reboot egress node, lr-policy-list was not correct, some duplicate records or missed internal IPs [#981](https://github.com/openshift/ovn-kubernetes/pull/981) * [Bug 2058683](https://bugzilla.redhat.com/show_bug.cgi?id=2058683): [4.9z] Multiple ExGW cache validation/improvements [#972](https://github.com/openshift/ovn-kubernetes/pull/972) * [Bug 2068619](https://bugzilla.redhat.com/show_bug.cgi?id=2068619): egressgw: fix deadlock due to behavior of RWLock [#1012](https://github.com/openshift/ovn-kubernetes/pull/1012) * [Bug 2063835](https://bugzilla.redhat.com/show_bug.cgi?id=2063835): backport 2052975 to 4.9 [#996](https://github.com/openshift/ovn-kubernetes/pull/996) * [Bug 2060080](https://bugzilla.redhat.com/show_bug.cgi?id=2060080): [release-4.9] Network Policy fixes [#985](https://github.com/openshift/ovn-kubernetes/pull/985) * [release 4.9] Update project owners [#991](https://github.com/openshift/ovn-kubernetes/pull/991) * [Bug 2055317](https://bugzilla.redhat.com/show_bug.cgi?id=2055317): Hack ITP:preferLocal for DNS service [#964](https://github.com/openshift/ovn-kubernetes/pull/964) * [Bug 2034744](https://bugzilla.redhat.com/show_bug.cgi?id=2034744): Fix egress IP allocator sync [#887](https://github.com/openshift/ovn-kubernetes/pull/887) * [Bug 2053310](https://bugzilla.redhat.com/show_bug.cgi?id=2053310): [release-4.9] Fix pod-creation-retry [#951](https://github.com/openshift/ovn-kubernetes/pull/951) * [Bug 2045576](https://bugzilla.redhat.com/show_bug.cgi?id=2045576): [CARRY][Downstream-only] Give warning when ipFamilyPolicy implicitly set [#938](https://github.com/openshift/ovn-kubernetes/pull/938) * [Bug 2054299](https://bugzilla.redhat.com/show_bug.cgi?id=2054299): Lock the reassignment procedure during node deletion to avoid races [#955](https://github.com/openshift/ovn-kubernetes/pull/955) * [Bug 2056883](https://bugzilla.redhat.com/show_bug.cgi?id=2056883): Revert "HACK: disable skip_snat for load balancers." [#942](https://github.com/openshift/ovn-kubernetes/pull/942) * [Bug 2055549](https://bugzilla.redhat.com/show_bug.cgi?id=2055549): Fix podHandlerCache key [#962](https://github.com/openshift/ovn-kubernetes/pull/962) * [Bug 2040594](https://bugzilla.redhat.com/show_bug.cgi?id=2040594): Create iptables NAT rules also for loadbalancer services [#905](https://github.com/openshift/ovn-kubernetes/pull/905) * [Bug 2014003](https://bugzilla.redhat.com/show_bug.cgi?id=2014003): Fix gateway routers answer ARP/NDP requests for LoadBalancer/ExternalIP services [#952](https://github.com/openshift/ovn-kubernetes/pull/952) * [Bug 2054139](https://bugzilla.redhat.com/show_bug.cgi?id=2054139): Don't return err when annotation cannot be unmarshalled [#954](https://github.com/openshift/ovn-kubernetes/pull/954) * [Bug 1996751](https://bugzilla.redhat.com/show_bug.cgi?id=1996751): Bump OVN to 21.12 [#959](https://github.com/openshift/ovn-kubernetes/pull/959) * [Bug 2028812](https://bugzilla.redhat.com/show_bug.cgi?id=2028812): Modification of ClusterIPs shall trigger svc update [#872](https://github.com/openshift/ovn-kubernetes/pull/872) * [Bug 2042494](https://bugzilla.redhat.com/show_bug.cgi?id=2042494): [4.9] Set the OVS port as transient [#914](https://github.com/openshift/ovn-kubernetes/pull/914) * [Bug 2022049](https://bugzilla.redhat.com/show_bug.cgi?id=2022049): EgressGW: only return unique elements from getRouteInfosForGateway() [#826](https://github.com/openshift/ovn-kubernetes/pull/826) * [Bug 2034669](https://bugzilla.redhat.com/show_bug.cgi?id=2034669): Fix node connectivity to service backed by egress IP pods [#886](https://github.com/openshift/ovn-kubernetes/pull/886) * [Bug 2036977](https://bugzilla.redhat.com/show_bug.cgi?id=2036977): Fixes for shared to local gateway migration [#892](https://github.com/openshift/ovn-kubernetes/pull/892) * [Bug 2034668](https://bugzilla.redhat.com/show_bug.cgi?id=2034668): Fix pod handlers and pod IP parsing for egress IP [#884](https://github.com/openshift/ovn-kubernetes/pull/884) * [Bug 2035336](https://bugzilla.redhat.com/show_bug.cgi?id=2035336): [4.9-backport] Fix Netpol retry mechanisms [#893](https://github.com/openshift/ovn-kubernetes/pull/893) * [Bug 2033672](https://bugzilla.redhat.com/show_bug.cgi?id=2033672): Multiple exgw - Use --may-exist on hybrid policy and correct hybrid policy cleanup [#877](https://github.com/openshift/ovn-kubernetes/pull/877) * [Bug 2027864](https://bugzilla.redhat.com/show_bug.cgi?id=2027864): [4.9z] Fixes race between node handler and pod sync [#857](https://github.com/openshift/ovn-kubernetes/pull/857) * [Bug 2027983](https://bugzilla.redhat.com/show_bug.cgi?id=2027983): [4.9.z] Make config parsing more resilient for unknown fields [#860](https://github.com/openshift/ovn-kubernetes/pull/860) * [Bug 2027485](https://bugzilla.redhat.com/show_bug.cgi?id=2027485): [4.9z] addressManager should not call sync() from ErrorCallback [#852](https://github.com/openshift/ovn-kubernetes/pull/852) * [Bug 2022042](https://bugzilla.redhat.com/show_bug.cgi?id=2022042): [4.9z] Avoid stale annotations by re-subscribing to netlink [#828](https://github.com/openshift/ovn-kubernetes/pull/828) * [Bug 2018398](https://bugzilla.redhat.com/show_bug.cgi?id=2018398): [4.9z] findLegacyLBs to also include idling LBs [#837](https://github.com/openshift/ovn-kubernetes/pull/837) * [Bug 2016945](https://bugzilla.redhat.com/show_bug.cgi?id=2016945): Update iface-id-ver for existing ports [#805](https://github.com/openshift/ovn-kubernetes/pull/805) * [Bug 1997072](https://bugzilla.redhat.com/show_bug.cgi?id=1997072): [4.9] phase 2 scale improvements [#778](https://github.com/openshift/ovn-kubernetes/pull/778) * [Bug 2009515](https://bugzilla.redhat.com/show_bug.cgi?id=2009515): [4.9] ovs: bump to 2.16.0-15.el8fdp [#776](https://github.com/openshift/ovn-kubernetes/pull/776) * [Bug 2009857](https://bugzilla.redhat.com/show_bug.cgi?id=2009857): filter out KubeAPIAuth when logging CNI requests [#777](https://github.com/openshift/ovn-kubernetes/pull/777) * [Bug 2012025](https://bugzilla.redhat.com/show_bug.cgi?id=2012025): bump OVN to ovn21.09-21.09.0-20.el8fdp [#788](https://github.com/openshift/ovn-kubernetes/pull/788) * [Full changelog](https://github.com/openshift/ovn-kubernetes/compare/100ec238a99bfb76e497a509085d2ac89c98a177...f1da3762a3c5da318ca7c2fcc405b25b28c5aa54) ### [prometheus-config-reloader, prometheus-operator](https://github.com/openshift/prometheus-operator/tree/170b0686e10980d980a3d0a89d023384baff15b6) * [Bug 2052201](https://bugzilla.redhat.com/show_bug.cgi?id=2052201): Address race condition in recreate flow for statefulset [#167](https://github.com/openshift/prometheus-operator/pull/167) * BUG 2041459: alertmanager: only load cfg when writing cfg [#148](https://github.com/openshift/prometheus-operator/pull/148) * [Full changelog](https://github.com/openshift/prometheus-operator/compare/ce7d979635b9d1210db48d54485bc924aed37cdb...170b0686e10980d980a3d0a89d023384baff15b6) ### [tests](https://github.com/openshift/origin/tree/9830fc932af5faac653685aa882b7c927730f3fe) * disruption checking is disabled for prior releases because we lack a … [#27473](https://github.com/openshift/origin/pull/27473) * [OCPBUGS-1967](https://issues.redhat.com/browse/OCPBUGS-1967): allow 2.5% disruption for 4.9 controlplane availability test [#27465](https://github.com/openshift/origin/pull/27465) * [OCPBUGS-1052](https://issues.redhat.com/browse/OCPBUGS-1052): allow frontends to tolerate 2.5% disruption during upgrades [#27434](https://github.com/openshift/origin/pull/27434) * [Bug 2101429](https://bugzilla.redhat.com/show_bug.cgi?id=2101429): test: switch to testing CapBnd over CapInh [#27279](https://github.com/openshift/origin/pull/27279) * [Bug 2064800](https://bugzilla.redhat.com/show_bug.cgi?id=2064800): skip imageregistry serial test on disconnected environments [#27189](https://github.com/openshift/origin/pull/27189) * [Bug 2077167](https://bugzilla.redhat.com/show_bug.cgi?id=2077167): disable unidling test failing under ovn-k [#27172](https://github.com/openshift/origin/pull/27172) * [Bug 2087230](https://bugzilla.redhat.com/show_bug.cgi?id=2087230): disable flaky unidling test [#27150](https://github.com/openshift/origin/pull/27150) * [Bug 2076241](https://bugzilla.redhat.com/show_bug.cgi?id=2076241): Remove second reference to BlueOcean annotations [#27066](https://github.com/openshift/origin/pull/27066) * [Bug 2076256](https://bugzilla.redhat.com/show_bug.cgi?id=2076256): Remove BlueOcean annotation check [#27038](https://github.com/openshift/origin/pull/27038) * [Bug 2072902](https://bugzilla.redhat.com/show_bug.cgi?id=2072902): [release-4.9] exclude loki-promtail from duplicated events [#26986](https://github.com/openshift/origin/pull/26986) * [Bug 2055380](https://bugzilla.redhat.com/show_bug.cgi?id=2055380): cleanup network policy ACL extended test [#26947](https://github.com/openshift/origin/pull/26947) * [Bug 2063284](https://bugzilla.redhat.com/show_bug.cgi?id=2063284): Add debug info for signature test [#26903](https://github.com/openshift/origin/pull/26903) * [Bug 2041358](https://bugzilla.redhat.com/show_bug.cgi?id=2041358): images: port image signature workflow test to OCP4/UBI8 [#26751](https://github.com/openshift/origin/pull/26751) * [Bug 2008181](https://bugzilla.redhat.com/show_bug.cgi?id=2008181): [release-4.9]: sync with openshift/kubernetes@release-4.9 [#26697](https://github.com/openshift/origin/pull/26697) * [Bug 2026802](https://bugzilla.redhat.com/show_bug.cgi?id=2026802): copy api-request upperbound for cluster-monitoring-operator [#26736](https://github.com/openshift/origin/pull/26736) * [Bug 2033341](https://bugzilla.redhat.com/show_bug.cgi?id=2033341): tests: skip some tests for proxy [#26705](https://github.com/openshift/origin/pull/26705) * [Bug 2033341](https://bugzilla.redhat.com/show_bug.cgi?id=2033341): [release-4.9] test: skip tests that won't work behind a proxy automatically [#26664](https://github.com/openshift/origin/pull/26664) * [Bug 2027796](https://bugzilla.redhat.com/show_bug.cgi?id=2027796): [release-4.9] Specify default namespace when getting API endpoint #26644 [#26644](https://github.com/openshift/origin/pull/26644) * [Bug 2027929](https://bugzilla.redhat.com/show_bug.cgi?id=2027929): test/e2e/upgrade/adminack: Poll gates for duration of update [#26656](https://github.com/openshift/origin/pull/26656) * [Bug 2024433](https://bugzilla.redhat.com/show_bug.cgi?id=2024433): CustomNoUpgrade should not fire no-upgrade failures [#26615](https://github.com/openshift/origin/pull/26615) * [Bug 2024773](https://bugzilla.redhat.com/show_bug.cgi?id=2024773): Skipping Django Test until bug is fixed [#26622](https://github.com/openshift/origin/pull/26622) * [Bug 2022866](https://bugzilla.redhat.com/show_bug.cgi?id=2022866): tests/extended/builds handle new step logging [#26606](https://github.com/openshift/origin/pull/26606) * [Bug 2024659](https://bugzilla.redhat.com/show_bug.cgi?id=2024659): Switch the cluster-role-reapers test to Serial [#26618](https://github.com/openshift/origin/pull/26618) * [Bug 2024656](https://bugzilla.redhat.com/show_bug.cgi?id=2024656): Create new-project without updating kubeconfig [#26619](https://github.com/openshift/origin/pull/26619) * [Bug 2025722](https://bugzilla.redhat.com/show_bug.cgi?id=2025722): test/e2e/upgrade: Bump durationToSoftFailure by 15m for minor updates [#26634](https://github.com/openshift/origin/pull/26634) * [Bug 2025088](https://bugzilla.redhat.com/show_bug.cgi?id=2025088): Add admin ack Upgradeable condition gate test [#26629](https://github.com/openshift/origin/pull/26629) * [Bug 2018442](https://bugzilla.redhat.com/show_bug.cgi?id=2018442): Add more tests for image policy [#26567](https://github.com/openshift/origin/pull/26567) * [Bug 2010225](https://bugzilla.redhat.com/show_bug.cgi?id=2010225): vendor: e2e iperf2 change threshold to 10MBps = 80 Mbps [#26526](https://github.com/openshift/origin/pull/26526) * [Bug 2019518](https://bugzilla.redhat.com/show_bug.cgi?id=2019518): Skip test 'clone repository using git:// protocol should clone using git:// if no proxy is configured' [#26561](https://github.com/openshift/origin/pull/26561) * [Full changelog](https://github.com/openshift/origin/compare/6105395c9ad99bfa5c9459f7d46ad9515a1229bc...9830fc932af5faac653685aa882b7c927730f3fe) ### [thanos](https://github.com/openshift/thanos/tree/996a5f0be29e1ccc290752091773e6190e9d3bc5) * [Bug 2074413](https://bugzilla.redhat.com/show_bug.cgi?id=2074413): Thanos Querier high CPU and memory usage till OOM [#81](https://github.com/openshift/thanos/pull/81) * [Full changelog](https://github.com/openshift/thanos/compare/e0fa82ca4384de82827f6fbb39789451b9243b5f...996a5f0be29e1ccc290752091773e6190e9d3bc5) ### [vsphere-csi-driver-operator](https://github.com/openshift/vmware-vsphere-csi-driver-operator/tree/9f56afd3450b385ef300d9783f028179161efe32) * [Bug 2018496](https://bugzilla.redhat.com/show_bug.cgi?id=2018496): Close connection to vCenter API [#50](https://github.com/openshift/vmware-vsphere-csi-driver-operator/pull/50) * [Full changelog](https://github.com/openshift/vmware-vsphere-csi-driver-operator/compare/09517b50973f19d8f3d4fb19e84fe04674717c9b...9f56afd3450b385ef300d9783f028179161efe32) ### [vsphere-problem-detector](https://github.com/openshift/vsphere-problem-detector/tree/53290ea45cb7cde3ea398da163f9f3dd9d5f0a3d) * [Bug 2060214](https://bugzilla.redhat.com/show_bug.cgi?id=2060214): Fix stale metrics [#82](https://github.com/openshift/vsphere-problem-detector/pull/82) * [Bug 2033733](https://bugzilla.redhat.com/show_bug.cgi?id=2033733): Deferred logout after checks are run [#67](https://github.com/openshift/vsphere-problem-detector/pull/67) * [Full changelog](https://github.com/openshift/vsphere-problem-detector/compare/646689c310206d7ef15e7f3530d312a28a0d3b66...53290ea45cb7cde3ea398da163f9f3dd9d5f0a3d)